Back
CVE-2019-10952
CRITICAL
An attacker could send a crafted HTTP/HTTPS request to render the web server unavailable and/or lead to remote code execution caused by a stack-based buffer overflow vulnerability. A cold restart is required for recovering CompactLogix 5370 L1, L2, and L3 Controllers, Compact GuardLogix 5370 controllers, and Armor Compact GuardLogix 5370 Controllers Versions 20 - 30 and earlier.
Published: May 1, 2019
Modified: Jun 17, 2026
CWE-400
CWE-787
CVSS Metrics
CVSSv3
Attack Vector:
NETWORK
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
HIGH
Availability Impact:
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products (4)
| Vendor | Product | Version |
|---|---|---|
| rockwellautomation | compactlogix_5370_l1_firmware | * ≥ 20.011 |
| rockwellautomation | compactlogix_5370_l2_firmware | * ≥ 20.011 |
| rockwellautomation | compactlogix_5370_l3_firmware | * ≥ 20.011 |
| rockwellautomation | armor_compact_guardlogix_5370_firmware | * ≥ 20.011 |
GitHub Security Advisory GHSA-cgc7-wrh2-gfjh
An attacker could send a crafted HTTP/HTTPS request to render the web server unavailable and/or...
References (6)
- http://www.securityfocus.com/bid/108118 Third Party Advisory, VDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-19-120-01 Third Party Advisory, US Government Resource
- https://rockwellautomation.custhelp.com/app/answers/detail/a_id/1075979
- http://www.securityfocus.com/bid/108118 Third Party Advisory, VDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSA-19-120-01 Third Party Advisory, US Government Resource
- https://rockwellautomation.custhelp.com/app/answers/detail/a_id/1075979
Risk Scores
CVSS Score
9.8 / 10
EPSS Score
9.99%
Top 5% most likely to be exploited
Threat Score
42.2 / 100
Data Sources
NVD
EPSS
GitHub