Security Advisory

CVE-2024-6242

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-01 15:15:32
Last updated 2025-09-25 13:34:40
Assigner Rockwell
State PUBLISHED

Description

A vulnerability exists in Rockwell Automation affected products that allows a threat actor to bypass the Trusted® Slot feature in a ControlLogix® controller. If exploited on any affected module in a 1756 chassis, a threat actor could potentially execute CIP commands that modify user projects and/or device configuration on a Logix controller in the chassis.