CVE-2024-45825

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Sep 12, 2024
CWE ID 20

Summary

CVE-2024-45825 is a denial-of-service vulnerability affecting specific products, which can be exploited by sending malformed CIP packets over the network. This results in a significant nonrecoverable fault that leads to service disruption, posing a high risk to organizational operations. The vulnerability has a base severity score of 7.5 and an availability impact rated as high, indicating that it can cause substantial downtime without requiring user interaction or special privileges. To remediate this issue, organizations should follow security advisories from Rockwell Automation, as detailed in their advisory documentation. The exploitability of this vulnerability is considered low complexity, meaning it could potentially be leveraged by attackers with minimal effort.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share