← Back to home
ICSA-20-170-04  ·  Published 2020-06-18  ·  View on CISA ICS-CERT ↗

Rockwell Automation FactoryTalk Services Platform

CVSS 7.5 HIGH

Risk Summary

Successful exploitation of this vulnerability could allow an unauthenticated attacker to execute remote COM objects with elevated privileges.

CVEs (1)

Remediations

  • Affected users are encouraged to use Rockwell Automation Knowledgebase article 25612 to determine if FactoryTalk Services Platform is installed. Those using the affected product are directed to implement a secure communication strategy as outlined in Rockwell Automation Knowledgebase article 109056.
  • For more information please see Rockwell Automation Knowledgebase article 1126946

Affected Vendors

Rockwell Automation

Affected Products (1)

Rockwell Automation · FactoryTalk Services Platform vers:all/*

Affected Sectors

Food and Agriculture, Transportation Systems, and Water and Wastewater Systems

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more