Denial of Service Vulnerability in FactoryTalk Linx by Rockwell Automation
CVE-2020-12005
Key Information:
What is CVE-2020-12005?
A vulnerability is present in FactoryTalk Linx that allows attackers to exploit the file upload functionality. By uploading EDS files with malicious compression, an attacker could cause excessive CPU resource consumption. This leads to a denial-of-service condition, potentially disrupting critical operations in environments that rely on these systems for industrial control and automation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FactoryTalk Linx, RSLinx Classic, Connected Components Workbench, ControlFLASH Plus, FactoryTalk Asset Centre, FactoryTalk Linx CommDTM, Studio 5000 Launcher, Studio 5000 Logix Designer software FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Version 12 and prior, ControlFLASH: Version 14 and later, ControlFLASH Plus: Version 1 and later, FactoryTalk Asset Centre: Version 9 and later, FactoryTalk Linx CommDTM: Version 1 and later, Studio 5000 Launcher: Version 31 and later Stud, 5000 Logix Designer software: Version 32 and prior
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
