CVE-2021-22681 is a critical vulnerability in Rockwell Automation Studio 5000 Logix Designer and RSLogix 5000, enabling unauthenticated attackers to bypass controller verification and gain unauthorized access to various CompactLogix, ControlLogix, and GuardLogix controllers. Rated 9.8 CVSS, this network-exploitable flaw allows for full compromise of confidentiality, integrity, and availability of affected industrial control systems without requiring user interaction or privileges. The vulnerability is actively exploited in the wild, as evidenced by its inclusion in CISA's Known Exploited Vulnerabilities catalog, and has received considerable attention from the cybersecurity community and media.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2.10CPE matchmatch criteria | cpe:2.3:a:rockwellautomation:factorytalk_services_platform:*:*:*:*:*:*:*:* | ||
>= 16, <= 20CPE matchmatch criteria | cpe:2.3:a:rockwellautomation:rslogix_5000:*:*:*:*:*:*:*:* | ||
>= 21.0CPE matchmatch criteria | cpe:2.3:a:rockwellautomation:studio_5000_logix_designer:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.