A vulnerability was discovered in the Rockwell Automation Armor PowerFlex device when the product sends communications to the local event log. Threat actors could exploit this vulnerability by sending an influx of network commands, causing the product to generate an influx of event log traffic at a high rate. If exploited, the product would stop normal operations and self-reset creating a denial-of-service condition. The error code would need to be cleared prior to resuming normal operations.
History

Fri, 11 Oct 2024 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Rockwell

Published: 2023-08-08T14:24:26.886Z

Updated: 2024-10-11T22:02:11.892Z

Reserved: 2023-04-28T19:37:27.989Z

Link: CVE-2023-2423

cve-icon Vulnrichment

Updated: 2024-08-02T06:19:15.092Z

cve-icon NVD

Status : Modified

Published: 2023-08-08T15:15:10.163

Modified: 2024-11-21T07:58:35.487

Link: CVE-2023-2423

cve-icon Redhat

No data.