Vulnerability record · CVE-2020-6980 · published 16 March 2020
CVE-2020-6980: Rockwellautomation micrologix 1400 a firmware cleartext storage of sensitive data vulnerability
Rockwellautomation · Micrologix 1400 A Firmware
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, If Simple Mail Transfer Protocol (SMTP) account data is saved in RSLogix 500, a local attacker with access to a victim’s project may be able to gather SMTP server authentication data as it is written to the project file in cleartext.
Description
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, If Simple Mail Transfer Protocol (SMTP) account data is saved in RSLogix 500, a local attacker with access to a victim’s project may be able to gather SMTP server authentication data as it is written to the project file in cleartext.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Affected products
4 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://www.us-cert.gov/ics/advisories/icsa-20-070-06 | Third Party AdvisoryUS Government Resource |
| https://www.us-cert.gov/ics/advisories/icsa-20-070-06 | Third Party AdvisoryUS Government Resource |
Track CVE-2020-6980 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2020-6980), CISA KEV, FIRST EPSS (scores of 2026-10-09). This page is refreshed as NVD updates the record.