Vulnerabilities > Rockwellautomation > Pavilion8 > High

DATE CVE VULNERABILITY TITLE RISK
2024-08-14 CVE-2024-40620 Missing Encryption of Sensitive Data vulnerability in Rockwellautomation Pavilion8 5.20.00
CVE-2024-40620 IMPACT A vulnerability exists in the affected product due to lack of encryption of sensitive information.
network
low complexity
rockwellautomation CWE-311
7.5
2024-07-16 CVE-2024-6435 Incorrect Permission Assignment for Critical Resource vulnerability in Rockwellautomation Pavilion8
A privilege escalation vulnerability exists in the affected products which could allow a malicious user with basic privileges to access functions which should only be available to users with administrative level privileges.
network
low complexity
rockwellautomation CWE-732
8.8