CVE-2020-14502 - CVE House
Back to Database
Status published Unknown CVE-2020-14502

The web interface of the 1734-AENTR communication module is vulnerable...

Vulnerability Description

The web interface of the 1734-AENTR communication module is vulnerable to stored XSS. A remote, unauthenticated attacker could store a malicious script within the web interface that, when executed, could modify some string values on the homepage of the web interface.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-14502

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Rockwell Automation

View all reports →

Affected Software

1734-AENTR
Vulnerable Versions:
Series B 4.001 to 4.005, and 5.011 to 5.017, Series C 6.011 and 6.012

Timeline

Official Publish: February 24th, 2022
Last Modified: April 17th, 2025
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)