Опубликовано: 12 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.4
CVSS3: 6.3
Описание
Inductive Automation Ignition Software is vulnerable to an unauthenticated API endpoint exposure that may allow an attacker to remotely change the "forgot password" recovery email address.
Inductive Automation Ignition Software is vulnerable to an unauthenticated API endpoint exposure that may allow an attacker to remotely change the "forgot password" recovery email address.
Связанные уязвимости
CVSS3: 6.3
nvd
6 месяцев назад
A privileged Ignition user, intentionally or otherwise, imports an external file with a specially crafted payload, which executes embedded malicious code.