CVE-2019-10955
In Rockwell Automation MicroLogix 1400 Controllers Series A, All Versions Series B, v15.002 and earlier, MicroLogix 1100 Controllers v14.00 and earlier, CompactLogix 5370 L1 controllers v30.014 and earlier, CompactLogix 5370 L2 controllers v30.014 and earlier, CompactLogix 5370 L3 controllers (includes CompactLogix GuardLogix controllers) v30.014 and earlier, an open redirect vulnerability could allow a remote unauthenticated attacker to input a malicious link to redirect users to a malicious site that could run or download arbitrary malware on the user’s machine.
Published:Apr 25, 2019
Last Modified:Jun 3, 2026
EPS:Apr 25, 2019
EPSS Score:0.02993
CVSS Score:6.1
Affected Products
Vendor
Product
Action
Vendor
Rockwellautomation
Product
Compactlogix 5370 L1
Rockwellautomation
Compactlogix 5370 L1
Vendor
Rockwellautomation
Product
Compactlogix 5370 L1 Firmware
Rockwellautomation
Compactlogix 5370 L1 Firmware
Vendor
Rockwellautomation
Product
Compactlogix 5370 L2
Rockwellautomation
Compactlogix 5370 L2
Vendor
Rockwellautomation
Product
Compactlogix 5370 L2 Firmware
Rockwellautomation
Compactlogix 5370 L2 Firmware
Vendor
Rockwellautomation
Product
Compactlogix 5370 L3
Rockwellautomation
Compactlogix 5370 L3
Vendor
Rockwellautomation
Product
Compactlogix 5370 L3 Firmware
Rockwellautomation
Compactlogix 5370 L3 Firmware
Vendor
Rockwellautomation
Product
Micrologix 1100
Rockwellautomation
Micrologix 1100
Vendor
Rockwellautomation
Product
Micrologix 1100 Firmware
Rockwellautomation
Micrologix 1100 Firmware
Vendor
Rockwellautomation
Product
Micrologix 1400
Rockwellautomation
Micrologix 1400
Vendor
Rockwellautomation
Product
Micrologix 1400 A Firmware
Rockwellautomation
Micrologix 1400 A Firmware
Vendor
Rockwellautomation
Product
Micrologix 1400 B Firmware
Rockwellautomation
Micrologix 1400 B Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
