An attacker could send a crafted HTTP/HTTPS request to render the web server unavailable and/or lead to remote code execution caused by a stack-based buffer overflow vulnerability. A cold restart is required for recovering CompactLogix 5370 L1, L2, and L3 Controllers, Compact GuardLogix 5370 controllers, and Armor Compact GuardLogix 5370 Controllers Versions 20 - 30 and earlier.
History

Fri, 20 Feb 2026 19:00:00 +0000

Type Values Removed Values Added
Description An attacker could send a crafted HTTP/HTTPS request to render the web server unavailable and/or lead to remote code execution caused by a stack-based buffer overflow vulnerability. A cold restart is required for recovering CompactLogix 5370 L1, L2, and L3 Controllers, Compact GuardLogix 5370 controllers, and Armor Compact GuardLogix 5370 Controllers Versions 20 - 30 and earlier. An attacker could send a crafted HTTP/HTTPS request to render the web server unavailable and/or lead to remote code execution caused by a stack-based buffer overflow vulnerability. A cold restart is required for recovering CompactLogix 5370 L1, L2, and L3 Controllers, Compact GuardLogix 5370 controllers, and Armor Compact GuardLogix 5370 Controllers Versions 20 - 30 and earlier.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2019-05-01T19:02:42.000Z

Updated: 2024-08-04T22:40:15.266Z

Reserved: 2019-04-08T00:00:00.000Z

Link: CVE-2019-10952

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-05-01T20:29:00.257

Modified: 2026-02-20T19:21:39.200

Link: CVE-2019-10952

cve-icon Redhat

No data.