Rockwell Automation FactoryTalk View Machine Edition Remote Code Execution Vulnerability
Vulnerability
A remote code execution vulnerability has been identified in Rockwell Automation's FactoryTalk View Machine Edition, versions prior to 15. This vulnerability arises from inadequate input sanitation, potentially allowing remote attackers to execute commands or code with high privileges.
Impact
Exploitation of this vulnerability could lead to unauthorized remote code execution as a high-privileged user.
Remediation
Users are advised to upgrade to version 15.00 or apply the patch available in AID 1152571. For additional guidance on mitigating security risks in industrial automation control systems, Rockwell Automation recommends following their security best practices.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
