CVE-2016-0868

Stack-based buffer overflow on Rockwell Automation Allen-Bradley MicroLogix 1100 devices A through 15.000 and B before 15.002 allows remote attackers to execute arbitrary code via a crafted web request.
References
Link Resource
http://www.securitytracker.com/id/1034861 Third Party Advisory VDB Entry
https://ics-cert.us-cert.gov/advisories/ICSA-16-026-02 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
cpe:2.3:h:rockwellautomation:ab_micrologix_controller:1100:*:*:*:*:*:*:*
OR cpe:2.3:a:rockwellautomation:1763-l16awa_series_a:15.000:*:*:*:*:*:*:*
cpe:2.3:a:rockwellautomation:1763-l16awa_series_b:15.000:*:*:*:*:*:*:*
cpe:2.3:a:rockwellautomation:1763-l16bbb_series_a:15.000:*:*:*:*:*:*:*
cpe:2.3:a:rockwellautomation:1763-l16bbb_series_b:15.000:*:*:*:*:*:*:*
cpe:2.3:a:rockwellautomation:1763-l16bwa_series_a:15.000:*:*:*:*:*:*:*
cpe:2.3:a:rockwellautomation:1763-l16bwa_series_b:15.000:*:*:*:*:*:*:*
cpe:2.3:a:rockwellautomation:1763-l16dwd_series_a:15.000:*:*:*:*:*:*:*
cpe:2.3:a:rockwellautomation:1763-l16dwd_series_b:15.000:*:*:*:*:*:*:*

History

No history.

Information

Published : 2016-01-28 21:59

Updated : 2023-12-10 11:46


NVD link : CVE-2016-0868

Mitre link : CVE-2016-0868

CVE.ORG link : CVE-2016-0868


JSON object : View

Products Affected

rockwellautomation

  • 1763-l16awa_series_b
  • 1763-l16bwa_series_b
  • 1763-l16dwd_series_b
  • 1763-l16bbb_series_a
  • 1763-l16dwd_series_a
  • 1763-l16awa_series_a
  • 1763-l16bbb_series_b
  • 1763-l16bwa_series_a
  • ab_micrologix_controller
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer