CVE-2021-22681
Description
Rockwell Automation Studio 5000 Logix Designer Versions 21 and later, and RSLogix 5000 Versions 16 through 20 use a key to verify Logix controllers are communicating with Rockwell Automation CompactLogix 1768, 1769, 5370, 5380, 5480: ControlLogix 5550, 5560, 5570, 5580; DriveLogix 5560, 5730, 1794-L34; Compact GuardLogix 5370, 5380; GuardLogix 5570, 5580; SoftLogix 5800. Rockwell Automation Studio 5000 Logix Designer Versions 21 and later and RSLogix 5000: Versions 16 through 20 are vulnerable because an unauthenticated attacker could bypass this verification mechanism and authenticate with Rockwell Automation CompactLogix 1768, 1769, 5370, 5380, 5480: ControlLogix 5550, 5560, 5570, 5580; DriveLogix 5560, 5730, 1794-L34; Compact GuardLogix 5370, 5380; GuardLogix 5570, 5580; SoftLogix 5800.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- cpe:2.3:a:rockwellautomation:factorytalk_services_platform:*:*:*:*:*:*:*:*Range: >=2.10
cpe:2.3:a:rockwellautomation:rslogix_5000:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:rockwellautomation:rslogix_5000:*:*:*:*:*:*:*:*range: >=16,<=20
- (no CPE)range: 16-20
cpe:2.3:a:rockwellautomation:studio_5000_logix_designer:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:rockwellautomation:studio_5000_logix_designer:*:*:*:*:*:*:*:*range: >=21.0
- (no CPE)range: >=21
- Rockwell Automation/Studio 5000 Logix Designer / RSLogix 5000description
- Range: 1768, 1769, 5370, 5380, 5480
Patches
Vulnerability mechanics
References
2- us-cert.cisa.gov/ics/advisories/icsa-21-056-03nvdThird Party AdvisoryUS Government Resource
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
3- Coordinated "cyberattack" on U.S. water utilities: What you need to knowTenable Blog · Jul 29, 2026
- Iran's Cyber Crosshairs Focus Beyond Critical InfrastructureDark Reading · Jul 9, 2026
- Rockwell Automation Patches Vulnerabilities in ICS Controllers and SoftwareSecurityWeek · Jun 17, 2026