Vulnerabilities > BR Automation > Automation Runtime > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-02-05 CVE-2024-0323 Unspecified vulnerability in Br-Automation Automation Runtime
The FTP server used on the B&R Automation Runtime supports unsecure encryption mechanisms, such as SSLv3, TLSv1.0 and TLS1.1.
network
low complexity
br-automation
critical
9.8
2020-04-20 CVE-2019-19108 Use of Hard-coded Credentials vulnerability in Br-Automation Automation Studio
An authentication weakness in the SNMP service in B&R Automation Runtime versions 2.96, 3.00, 3.01, 3.06 to 3.10, 4.00 to 4.63, 4.72 and above allows unauthenticated users to modify the configuration of B&R products via SNMP.
network
low complexity
br-automation CWE-798
critical
9.4