← voltar
CVE-2020-12028highCWE-264

Rockwell Automation FactoryTalk View SE

48Vexday Risk Score

Corrija em breve. Ela tem exploit funcional público.

ssvc Attendcvss 7.3epss 53%
da publicação à arma0 dias
Publicada no NVD20 de jul.
metasploit22 de jun.
probabilidade de exploração
53%top 1% das CVEs
exploração observada
nãonenhuma fonte reporta
In all versions of FactoryTalk View SEA remote, an authenticated attacker may be able to utilize certain handlers to interact with the data on the remote endpoint since those handlers do not enforce appropriate permissions. Rockwell Automation recommends enabling built in security features found within FactoryTalk View SE. Users should follow guidance found in knowledge base articles 109056 and 1126943 to set up IPSec and/or HTTPs.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N