ZeroHour

CVE-2020-6980

CVSS 3.1
3.3 low
EPSS
<1%p35
Published
()
Modified
Description

Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, If Simple Mail Transfer Protocol (SMTP) account data is saved in RSLogix 500, a local attacker with access to a victim’s project may be able to gather SMTP server authentication data as it is written to the project file in cleartext.

Vendors
rockwellautomation
Products
micrologix 1400 a firmware, micrologix 1400 b firmware, micrologix 1100 firmware, rslogix 500
Weakness
CWE-312
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.