Vulnerabilities > Rockwellautomation

DATE CVE VULNERABILITY TITLE RISK
2024-09-12 CVE-2024-7960 Unspecified vulnerability in Rockwellautomation Pavilion8 5.20
The Rockwell Automation affected product contains a vulnerability that allows a threat actor to view sensitive information and change settings.
network
low complexity
rockwellautomation
critical
9.1
2024-09-12 CVE-2024-7961 Path Traversal vulnerability in Rockwellautomation Pavilion8 5.20
A path traversal vulnerability exists in the Rockwell Automation affected product.
network
low complexity
rockwellautomation CWE-22
critical
9.8
2024-09-12 CVE-2024-6077 Unspecified vulnerability in Rockwellautomation products
A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object.
network
low complexity
rockwellautomation
7.5
2024-09-12 CVE-2024-8533 Incorrect Default Permissions vulnerability in Rockwellautomation products
A privilege escalation vulnerability exists in the Rockwell Automation affected products.
network
low complexity
rockwellautomation CWE-276
8.8
2024-09-12 CVE-2024-45823 Unspecified vulnerability in Rockwellautomation Factorytalk Batch View 2.01.00
CVE-2024-45823 IMPACT An authentication bypass vulnerability exists in the affected product.
network
low complexity
rockwellautomation
critical
9.8
2024-09-12 CVE-2024-45825 Unspecified vulnerability in Rockwellautomation 5015-U8Ihft Firmware 1.011/1.012
CVE-2024-45825 IMPACT A denial-of-service vulnerability exists in the affected products.
network
low complexity
rockwellautomation
7.5
2024-09-12 CVE-2024-45826 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Rockwellautomation Thinmanager 13.1.0/13.2.0
CVE-2024-45826 IMPACT Due to improper input validation, a path traversal and remote code execution vulnerability exists when the ThinManager® processes a crafted POST request.
network
low complexity
rockwellautomation CWE-610
8.8
2024-09-12 CVE-2024-45824 Command Injection vulnerability in Rockwellautomation Factorytalk View 12.0/13.0
CVE-2024-45824 IMPACT A remote code vulnerability exists in the affected products.
network
low complexity
rockwellautomation CWE-77
critical
9.8
2024-08-23 CVE-2024-7986 Unspecified vulnerability in Rockwellautomation Thinmanager
A vulnerability exists in the Rockwell Automation ThinManager® ThinServer that allows a threat actor to disclose sensitive information.
network
low complexity
rockwellautomation
7.5
2024-08-14 CVE-2024-40619 Improper Check for Unusual or Exceptional Conditions vulnerability in Rockwellautomation products
CVE-2024-40619 IMPACT A denial-of-service vulnerability exists in the affected products.
network
low complexity
rockwellautomation CWE-754
7.5