Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-59hr-796q-5p86

Опубликовано: 03 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is enabled and deployed contains a vulnerability that may allow a remote, authenticated attacker to bypass FactoryTalk Security policies based on the computer name. If successfully exploited, this may allow an attacker to have the same privileges as if they were logged on to the client machine.

Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is enabled and deployed contains a vulnerability that may allow a remote, authenticated attacker to bypass FactoryTalk Security policies based on the computer name. If successfully exploited, this may allow an attacker to have the same privileges as if they were logged on to the client machine.

EPSS

Процентиль: 10%
0.00036
Низкий

8.8 High

CVSS3

Дефекты

CWE-693
CWE-863

Связанные уязвимости

CVSS3: 8.5
nvd
почти 4 года назад

Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is enabled and deployed contains a vulnerability that may allow a remote, authenticated attacker to bypass FactoryTalk Security policies based on the computer name. If successfully exploited, this may allow an attacker to have the same privileges as if they were logged on to the client machine.

CVSS3: 8.8
fstec
больше 4 лет назад

Уязвимость службы FactoryTalk Security платформы управления производственными процессами FactoryTalk Services Platform, позволяющая нарушителю обойти ограничения безопасности и повысить свои привилегии

EPSS

Процентиль: 10%
0.00036
Низкий

8.8 High

CVSS3

Дефекты

CWE-693
CWE-863