cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-46670,https://securityvulnerability.io/vulnerability/CVE-2022-46670,Rockwell Automation MicroLogix 1100 & 1400 Vulnerable to Cross-Site Scripting Attack," Rockwell Automation was made aware of a vulnerability by a security researcher from Georgia Institute of Technology that the MicroLogix 1100 and 1400 controllers contain a vulnerability that may give an attacker the ability to accomplish remote code execution.  The vulnerability is an unauthenticated stored cross-site scripting vulnerability in the embedded webserver. The payload is transferred to the controller over SNMP and is rendered on the homepage of the embedded website. ",Rockwell Automation,"Micrologix 1100 & 1400 Controllers,Micrologix 1400-b/c,Micrologix 1400-a",7.1,HIGH,0.0006200000061653554,false,,false,false,false,,,false,false,,2022-12-16T20:12:22.414Z,0 CVE-2019-10955,https://securityvulnerability.io/vulnerability/CVE-2019-10955,Open Redirect Vulnerability in Rockwell Automation MicroLogix and CompactLogix Controllers,"An open redirect vulnerability exists in Rockwell Automation MicroLogix and CompactLogix Controllers, which may allow an unauthenticated remote attacker to exploit the system. By crafting a malicious link, the attacker could redirect users to harmful websites, potentially enabling the download and execution of arbitrary malware on their devices. This risk is present in various models of MicroLogix and CompactLogix controllers, making it imperative for users to take precautionary measures.",Rockwell Automation,"Micrologix 1400 Controllers,Micrologix 1100 Controllers,Compactlogix 5370 L1 Controllers,Compactlogix 5370 L2 Controllers,Compactlogix 5370 L3 Controllers",6.1,MEDIUM,0.008500000461935997,false,,false,false,false,,,false,false,,2019-04-25T17:27:32.000Z,0