Rockwell Automation FactoryTalk AssetCentre Data Exposure Vulnerability

Vulnerability

A data exposure vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk AssetCentre. This vulnerability arises from the insecure storage of FactoryTalk Security user tokens, which could enable a threat actor to steal a token and impersonate another user.

Impact

Exploitation of this vulnerability could lead to unauthorized impersonation of users within the application, potentially allowing attackers to gain access to sensitive information or perform actions on behalf of the impersonated user.

Remediation

Users are advised to update FactoryTalk AssetCentre to V15.00.01 or later. For those using legacy versions, patches are available as part of the Rockwell Automation January 2025 Monthly Patch rollup. Additionally, restrict physical access to the machine to authorized users.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
1.3
exploitability
3.5
remediation
8.3
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.