CVE Feed

    Dashboard / CVE / CVE-2012-6441

    CVE-2012-6441

    An information exposure of confidential information results when the device receives a specially crafted CIP packet to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or Port 44818/UDP. Successful exploitation of this vulnerability could cause loss of confidentiality. Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/O EtherNet/IP adapter; ControlLogix 18 and earlier; CompactLogix 18 and earlier; GuardLogix 18 and earlier; SoftLogix 18 and earlier; CompactLogix controllers 19 and earlier; SoftLogix controllers 19 and earlier; ControlLogix controllers 20 and earlier; GuardLogix controllers 20 and earlier; and MicroLogix 1100 and 1400

    Published:Jan 24, 2013
    Last Modified:Jun 30, 2025
    EPS:Jan 24, 2013
    EPSS Score:0.02799
    CVSS Score:5

    Affected Products

    Vendor
    Rockwellautomation
    Product
    1756-enbt
    Vendor
    Rockwellautomation
    Product
    1756-eweb
    Vendor
    Rockwellautomation
    Product
    1768-enbt
    Vendor
    Rockwellautomation
    Product
    1768-eweb
    Vendor
    Rockwellautomation
    Product
    1794-aentr Flex I\/o Ethernet\/ip Adapter
    Vendor
    Rockwellautomation
    Product
    Compactlogix
    Vendor
    Rockwellautomation
    Product
    Compactlogix Controllers
    Vendor
    Rockwellautomation
    Product
    Compactlogix L32e Controller
    Vendor
    Rockwellautomation
    Product
    Compactlogix L35e Controller
    Vendor
    Rockwellautomation
    Product
    Controllogix
    Vendor
    Rockwellautomation
    Product
    Controllogix Controllers
    Vendor
    Rockwellautomation
    Product
    Flexlogix 1788-enbt Adapter
    Vendor
    Rockwellautomation
    Product
    Guardlogix
    Vendor
    Rockwellautomation
    Product
    Guardlogix Controllers
    Vendor
    Rockwellautomation
    Product
    Micrologix
    Vendor
    Rockwellautomation
    Product
    Softlogix
    Vendor
    Rockwellautomation
    Product
    Softlogix Controllers

    Exploits

    No exploit reference

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High