CVE-2020-5801 describes a denial-of-service vulnerability in Rockwell Automation FactoryTalk Linx, affecting all versions. An unauthenticated attacker can send a specially crafted OpenNamespace message to port 4241, triggering an unhandled exception in RnaDaSvr.dll and causing the process to terminate. This vulnerability has a CVSS v3.1 score of 7.5 (HIGH), indicating a network-based attack with low complexity that can lead to high availability impact. There is no public exploit code available, it is not listed on CISA's KEV catalog, and community discussion and media coverage are minimal, suggesting it is not actively exploited.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 6.11CPE matchmatch criteria | cpe:2.3:a:rockwellautomation:factorytalk_linx:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Rockwell Automation FactoryTalk Multiple Vulnerabilities
Dec 28, 2020Rockwell Automation FactoryTalk Multiple Vulnerabilities
Dec 28, 2020Rockwell Automation FactoryTalk Multiple Vulnerabilities
Dec 28, 2020Rockwell Automation FactoryTalk Multiple Vulnerabilities
Dec 28, 2020Rockwell Automation FactoryTalk Multiple Vulnerabilities
Dec 28, 2020Rockwell Automation FactoryTalk Multiple Vulnerabilities
Dec 28, 2020Rockwell Automation FactoryTalk Multiple Vulnerabilities
Dec 28, 2020