← Back to home
ICSA-24-256-23  ·  Published 2024-09-12  ·  View on CISA ICS-CERT ↗

Rockwell Automation FactoryTalk View Site

CVSS 9.8 CRITICAL

Risk Summary

Successful exploitation of this vulnerability could allow an attacker to perform unauthenticated remote code execution.

CVEs (1)

Remediations

  • Rockwell Automation offers users the following solutions:
  • FactoryTalk View Site Edition: Patches available here
  • Customers using the affected software are encouraged to apply the risk mitigations, if possible.
  • Navigate to the following link and apply patches, directions are on the link page
  • For information on how to mitigate Security Risks on industrial automation control systems, we encourage customers to implement our suggested security best practices to minimize the risk of the vulnerability.
  • For more information about this issue, please see the advisory on the Rockwell Automation security page.

Affected Vendors

Rockwell Automation

Affected Products (1)

Rockwell Automation · FactoryTalk View Site Edition 12.0|13.0|14.0

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more