ICSA-20-170-04
·
Published 2020-06-18
·
View on CISA ICS-CERT ↗
Rockwell Automation FactoryTalk Services Platform
CVSS 7.5
HIGH
Risk Summary
Successful exploitation of this vulnerability could allow an unauthenticated attacker to execute remote COM objects with elevated privileges.
CVEs (1)
Remediations
- Affected users are encouraged to use Rockwell Automation Knowledgebase article 25612 to determine if FactoryTalk Services Platform is installed. Those using the affected product are directed to implement a secure communication strategy as outlined in Rockwell Automation Knowledgebase article 109056.
- For more information please see Rockwell Automation Knowledgebase article 1126946
Affected Vendors
Rockwell Automation
Affected Products (1)
Rockwell Automation
·
FactoryTalk Services Platform
vers:all/*
Affected Sectors
Food and Agriculture, Transportation Systems, and Water and Wastewater Systems
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more