Rewterz
Rewterz Threat Alert – Multiple Phishing Campaigns – IoCs
April 23, 2019
Rewterz
Rewterz Threat Alert – Malspam Campaigns leading to Emotet and Bot Communications
April 24, 2019

Rewterz Threat Advisory – CVE-2019-10955 – Rockwell Automation MicroLogix 1400 and CompactLogix 5370 Controllers

Severity

Medium

Analysis Summary

An open redirect vulnerability could allow a remote unauthenticated attacker to input a malicious link to redirect users to a malicious site that could run or download arbitrary malware on the user’s machine.

Impact

Open redirect

Affected Vendors

Rockwell Automation

Affected Products

  • Rockwell Automation MicroLogix 1400
  • Rockwell Automation CompactLogix 5370 Controllers

Remediation

Vendor recommends following steps to minimize the risk of exploitation of this vulnerability.

  • Update to the latest software/ firmware that addresses the associated risk.
  • Only use trusted software, software patches and interact only with trusted website and attachments.