← Back to home
ICSA-24-284-15  ·  Published 2024-10-10  ·  View on CISA ICS-CERT ↗

Rockwell Automation DataMosaix Private Cloud

CVSS 8.8 HIGH

Risk Summary

Successful exploitation of these vulnerabilities could allow an attacker to view customer data or create, modify, or delete their own project.

Remediations

  • Rockwell Automation has addressed this issue in version v7.09 and encourages users to update to the newest available version. Rockwell Automation encourages users of the affected software to apply risk mitigations, if possible.
  • Rockwell Automation encourages users who are not able to upgrade to one of the corrected versions to apply security best practices, where possible.
  • For more information about this issue, please see the advisory on the Rockwell Automation security page.

Affected Vendors

Rockwell Automation

Affected Products (1)

Rockwell Automation · DataMosaix Private Cloud <=7.07

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more