Rockwell Automation ControlLogix Communications Modules Multiple Vulnerabilities

critical Nessus Plugin ID 177893

Version 1.40

Nov 12, 2024, 8:29 PM

  • Logic Changes (Adding installs report)

Plugin Feed: 202411122029

Version 1.38

Oct 29, 2024, 8:44 PM

  • Logic Changes (Extend structured reporting to vcf_extras)

Plugin Feed: 202410292044

Version 1.34

Oct 10, 2024, 11:57 PM

  • New

Plugin Feed: 202410102357

Version 1.33

Oct 9, 2024, 5:56 PM

  • Logic Changes (Corrects vulnerability-finding structured data tags to include the port.)

Plugin Feed: 202410091756

Version 1.29

Oct 3, 2024, 6:29 PM

  • Detection (Adding hardware constraint support to VCF and UCF)

Plugin Feed: 202410031829

Version 1.28

Oct 2, 2024, 4:10 PM

  • Logic Changes (Adds structured data reports to a subset of manual plugins.)

Plugin Feed: 202410021610

Version 1.23

Jul 17, 2024, 11:02 PM

  • Logic Changes

Plugin Feed: 202407172302

Version 1.19

May 20, 2024, 10:13 AM

  • Logic Changes

Plugin Feed: 202405201013

Version 1.16

Mar 19, 2024, 6:40 PM

  • Logic Changes (Improving logging to reduce disk space usage)

Plugin Feed: 202403191840

Version 1.13

Feb 9, 2024, 11:22 AM

  • New

Plugin Feed: 202402091122

Version 1.10

Sep 26, 2023, 8:16 PM

  • Logic Changes

Plugin Feed: 202309262016

Version 1.9

Jul 27, 2023, 2:06 PM

  • Exploit attributes ("Exploit available" set to "False")
  • CVSSv2 score source (changed from "CVE-2023-3596" to "CVE-2023-3595")
  • CVSSv3 score source (set to "CVE-2023-3595")
  • CVSS metrics ("CVSSv2 score" changed from 7.8 to 10.0. "CVSSv3 score" changed from 7.5 to 9.8. "CVSSv3 vector" changed from "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" to "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H". "CVSSv2 vector" changed from "CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C" to "CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C")

Plugin Feed: 202307271406

Version 1.8

Jul 24, 2023, 2:10 PM

  • CVSSv3 score source (set to "CVE-2023-3596")
  • Exploit attributes ("Exploit available" set to "False")
  • CVSS metrics ("CVSSv3 score" changed from 9.8 to 7.5. "CVSSv3 vector" changed from "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" to "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H")

Plugin Feed: 202307241410

Version 1.7

Jul 21, 2023, 2:12 PM

  • CVSS metrics ("CVSSv2 score" changed from 7.5 to 7.8. "CVSSv2 vector" changed from "CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P" to "CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C")
  • Exploit attributes ("Exploit available" set to "False")
  • CVSSv2 score source (changed from "CVE-2023-3595" to "CVE-2023-3596")

Plugin Feed: 202307211412

Version 1.6

Jul 17, 2023, 5:15 PM

  • Logic Changes (Make torture_cgi library PCP clean and consolidate utf16_to_ascii())

Plugin Feed: 202307171715

Version 1.5

Jul 13, 2023, 6:05 PM

  • Plugin metadata (added ICSA ID)

Plugin Feed: 202307131805

Version 1.4

Jul 13, 2023, 2:11 PM

  • Exploit attributes ("Exploit available" set to "False". "Exploitability ease" set to "No known exploits are available")
  • CVSS metrics ("CVSSv2 score" changed from 10.0 to 7.5. "CVSSv2 vector" changed from "CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C" to "CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P")
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:U/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:U/RL:O/RC:C")

Plugin Feed: 202307131411

Version 1.3

Jul 12, 2023, 10:04 PM

  • CEA reference

Plugin Feed: 202307122204

Version 1.2

Jul 12, 2023, 5:37 PM

  • CVSS metrics ("CVSSv2 score" set to 10.0. "CVSSv2 vector" set to "CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C". "CVSSv3 score" set to 9.8. "CVSSv3 vector" set to "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H")
  • CVSSv2 score source (set to "CVE-2023-3595")
  • Detection (add more vulnerable models)
  • Plugin metadata (Advisory information added)
  • Severity (changed from "High" to "Critical")
  • CVE (set "CVE" coverage to "CVE-2023-3595,CVE-2023-3596")

Plugin Feed: 202307121737

Version 1.1

Jul 12, 2023, 12:04 PM

  • Detection (add more vulnerable models)
  • Plugin metadata (removed trademark symbol)

Plugin Feed: 202307121204

Version 1.0

Jul 3, 2023, 5:59 PM

  • New

Plugin Feed: 202307031759

* Changelogs are generally available for changes made after Nov 1, 2022