← Back to home
ICSA-24-165-17  ·  Published 2024-06-13  ·  View on CISA ICS-CERT ↗

Rockwell Automation FactoryTalk View SE

CVSS 7.8 HIGH

Risk Summary

Successful exploitation of this vulnerability could allow low-privilege users to edit scripts, bypassing access control lists, and potentially gain further access within the system.

CVEs (1)

Remediations

  • Rockwell Automation has corrected this problem in V14.0 and later
  • Rockwell Automation encourages users of the affected software, who are not able to upgrade to one of the corrected versions, to apply the risk mitigations where possible.
  • Use the Secure Install option when installing FactoryTalk Services Platform.
  • Security Best Practices
  • For more information, see Rockwell Automation's security advisory

Affected Vendors

Rockwell Automation

Affected Products (1)

Rockwell Automation · FactoryTalk View SE v12.0

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more