Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2v5g-8cvx-qmfq

Опубликовано: 16 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9

Описание

A privilege escalation vulnerability exists in Rockwell Automation FactoryTalk® Service Platform (FTSP). If exploited, a malicious user with basic user group privileges could potentially sign into the software and receive FTSP Administrator Group privileges. A threat actor could potentially read and modify sensitive data, delete data and render the FTSP system unavailable.

A privilege escalation vulnerability exists in Rockwell Automation FactoryTalk® Service Platform (FTSP). If exploited, a malicious user with basic user group privileges could potentially sign into the software and receive FTSP Administrator Group privileges. A threat actor could potentially read and modify sensitive data, delete data and render the FTSP system unavailable.

EPSS

Процентиль: 55%
0.0033
Низкий

9 Critical

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 9
nvd
почти 2 года назад

A privilege escalation vulnerability exists in Rockwell Automation FactoryTalk® Service Platform (FTSP). If exploited, a malicious user with basic user group privileges could potentially sign into the software and receive FTSP Administrator Group privileges. A threat actor could potentially read and modify sensitive data, delete data and render the FTSP system unavailable.

CVSS3: 9
fstec
почти 2 года назад

Уязвимость веб-интерфейса сервисной платформы FactoryTalk, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 55%
0.0033
Низкий

9 Critical

CVSS3

Дефекты

CWE-732