IM
IronMonkey Threat Research
‹ Back to ICS Advisories

RSLinx Classic Third-Party Vulnerability

HIGH
CVSS 7.5
Date 2026-06-16T06:00:00+00:00
Source cisa-csaf
Published by CISA

// Description

Successful exploitation of this vulnerability can lead to a denial of service, where the application will become unresponsive and will not recover on its own.

// Vulnerabilities (1)

CVE ID CVSS Score Severity Description
CVE-2020-13573 7.5 high
The affected product is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code.

// Remediations (1)

Mitigation: Rockwell Automation recommends that customers using the affected software should upgrade to version
Rockwell Automation recommends that customers using the affected software should upgrade to version 4.60.00 or later. Customers who are not able to upgrade to one of the corrected versions, should consider applying the available patch (BF31213) for their current version or applying the recommended security best practices.

// References