CVE-2014-5410 describes a denial-of-service vulnerability in Rockwell Automation Allen-Bradley MicroLogix 1400 controllers (FRN 7 and earlier, and FRN B before 15.001). Remote attackers can exploit this flaw by sending malformed DNP3 packets over Ethernet or a serial line, leading to process disruption. With a CVSS score of 7.1, this vulnerability is considered high severity due to its network-based attack vector, medium complexity, and complete availability impact. Despite its age, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion, though it did receive limited media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1400CPE matchmatch criteria | cpe:2.3:h:rockwellautomation:ab_micrologix_controller:1400:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:N/I:N/A:C
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.