CVE-2021-32926 - CVE House
Back to Database
Status published Unknown CVE-2021-32926

When an authenticated password change request takes place, this vulnerability...

Vulnerability Description

When an authenticated password change request takes place, this vulnerability could allow the attacker to intercept the message that includes the legitimate, new password hash and replace it with an illegitimate hash. The user would no longer be able to authenticate to the controller (Micro800: All versions, MicroLogix 1400: Version 21 and later) causing a denial-of-service condition

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-32926

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Micro800, MicroLogix 1400
Vulnerable Versions:
Micro800: All versions, MicroLogix 1400: Version 21 and later when Enhanced Password Security enabled.

Timeline

Official Publish: June 3rd, 2021
Last Modified: June 4th, 2026
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.