You are here

Rockwell Automation 1794-AENT Flex I/O Series B (ICSA-20-294-01)

Rockwell Automation 1794-AENT Flex I/O Series B (ICSA-20-294-01)

Created: Tuesday, October 20, 2020 - 16:26
Categories:
Cybersecurity

CISA has published an advisory on a classic buffer overflow vulnerability in Rockwell Automation 1794-AENT Flex I/O Series B. Versions 4.003 and prior are affected. Successful exploitation of these vulnerabilities could crash the device being accessed, resulting in a buffer overflow condition that may allow remote code execution. Rockwell Automation recommends affected users ensure they are employing proper network segmentation and security controls when implementing the affected product. CISA also recommends a series of measures to mitigate this vulnerability. Read the advisory at CISA.