Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2018-14829

31
FAUCET Score

CVE-2018-14829 affects Rockwell Automation RSLinx Classic versions 4.00.01 and prior, allowing a remote attacker to send a malformed CIP packet to port 44818. This can cause a denial-of-service by crashing the application, or potentially enable remote arbitrary code execution through a buffer overflow. With a CVSS score of 9.8 (Critical), it has a high impact on confidentiality, integrity, and availability, requiring no user interaction or complex attack conditions. While no public exploit code is readily available (Metasploit, Nuclei, ExploitDB), it has garnered significant community discussion and media coverage, indicating awareness of its severity despite not being listed in CISA's KEV catalog.

Impacted Technologies

VendorProductVersion(s)CPE
<= 4.00.01CPE matchmatch criteria
cpe:2.3:a:rockwellautomation:rslinx:*:*:*:*:classic:*:*:*

CVSS Data

CVSS version used by this source: 3.0

9.8CRITICAL

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
5.9
CvssVersion
3.0

Exploit Intelligence

EPSS Score
16.09%
Probability of exploitation in next 30 days
EPSS Percentile
96.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.1609 is in the 93rd percentile among its peer group of 36,897 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (4)

bindvendor investigatingvia llm_extracted
dogukanurkervendor investigatingvia llm_extracted
kerasvendor investigatingvia llm_extracted
posthogvendor investigatingvia llm_extracted

Vendor Advisories (4)

dogukanurkerllm-dogukanurker-fb09470cd5b50469CRITICAL

[R1] RSLinx Classic Buffer Overflows

Sep 20, 2018
kerasllm-keras-c18eac758dae82e9CRITICAL

[R1] RSLinx Classic Buffer Overflows

Sep 20, 2018
bindllm-bind-1bea6127d9790e32CRITICAL

RSLinx Classic Buffer Overflows

Sep 20, 2018
posthogllm-posthog-d2e134a9131aec1cCRITICAL

[R1] RSLinx Classic Buffer Overflows

Sep 20, 2018

References

ics-cert.us-cert.gov / advisories/ICSA-18-263-02
Third Party AdvisoryUS Government Resource
tenable.com / security/research/tra-2018-26
ExploitThird Party Advisory