CVE Feed

    Dashboard / CVE / CVE-2012-6435

    CVE-2012-6435

    When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or Port 44818/UDP that instructs the CPU to stop logic execution and enter a fault state, a DoS can occur. This situation could cause loss of availability and a disruption of communication with other connected devices. Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/O EtherNet/IP adapter; ControlLogix 18 and earlier; CompactLogix 18 and earlier; GuardLogix 18 and earlier; SoftLogix 18 and earlier; CompactLogix controllers 19 and earlier; SoftLogix controllers 19 and earlier; ControlLogix controllers 20 and earlier; GuardLogix controllers 20 and earlier; and MicroLogix 1100 and 1400

    Published:Jan 24, 2013
    Last Modified:Jun 3, 2026
    EPS:Jan 24, 2013
    EPSS Score:0.06991
    CVSS Score:7.5

    Affected Products

    Vendor
    Rockwellautomation
    Product
    1756-enbt
    Vendor
    Rockwellautomation
    Product
    1756-eweb
    Vendor
    Rockwellautomation
    Product
    1768-enbt
    Vendor
    Rockwellautomation
    Product
    1768-eweb
    Vendor
    Rockwellautomation
    Product
    1794-aentr Flex I\/o Ethernet\/ip Adapter
    Vendor
    Rockwellautomation
    Product
    Compactlogix
    Vendor
    Rockwellautomation
    Product
    Compactlogix Controllers
    Vendor
    Rockwellautomation
    Product
    Compactlogix L32e Controller
    Vendor
    Rockwellautomation
    Product
    Compactlogix L35e Controller
    Vendor
    Rockwellautomation
    Product
    Controllogix
    Vendor
    Rockwellautomation
    Product
    Controllogix Controllers
    Vendor
    Rockwellautomation
    Product
    Flexlogix 1788-enbt Adapter
    Vendor
    Rockwellautomation
    Product
    Guardlogix
    Vendor
    Rockwellautomation
    Product
    Guardlogix Controllers
    Vendor
    Rockwellautomation
    Product
    Micrologix
    Vendor
    Rockwellautomation
    Product
    Softlogix
    Vendor
    Rockwellautomation
    Product
    Softlogix Controllers

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High