VDB
CVE-2024-12371
CVE-2024-12371
PUBLISHED
CVSS 9.300000190734863 CRITICAL
A device takeover vulnerability exists in the Rockwell Automation Power Monitor 1000. This vulnerability allows configuration of a new Policyholder user without any authentication via API. Policyholder user is the most privileged user that can perform edit operations, creating admin users and performing factory reset.
EPSS 0.24% · 47.1th percentile
Risk Scores
CVSS 4.0
9.300000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.24%
47.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rockwell Automation | PM1k 1408-TR2A-485 | <v4.020, <v4.020 |
| Rockwell Automation | PM1k 1408-TR1A-485 | <4.020, * |
| Rockwell Automation | PM1k 1408-TR2A-ENT | *, <4.020 |
| Rockwell Automation | PM1k 1408-EM1A-485 | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-BC3A-ENT | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-EM3A-ENT | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-EM3A-485 | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-EM2A-ENT | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-EM2A-485 | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-EM1A-ENT | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-TS3A-ENT | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-TS3A-485 | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-TR1A-ENT | <4.020, <4.020 |
| Rockwell Automation | PM1k 1408-BC3A-485 | <4.020, <4.020 |
Timeline
- Dec 17, 2024 PoC Published
- Dec 18, 2024 CVE Published
- Dec 18, 2024 PoC Published
- Dec 18, 2024 PoC Published
- Dec 19, 2024 EPSS Score
- Dec 20, 2024 PoC Published
- Dec 27, 2024 PoC Published
- Jan 4, 2025 EPSS Score
- Jan 21, 2025 EPSS Score
- Feb 6, 2025 EPSS Score
- Feb 23, 2025 EPSS Score
- Mar 11, 2025 EPSS Score