Ashlar-Vellum Cobalt
cpe:2.3:a:ashlar:cobalt:*:*:*:*:*:*:*
- <= 12.6.1204.207
A vulnerability allowing out-of-bounds write operations has been identified in multiple Ashlar-Vellum products, including Cobalt, Xenon, Argon, Lithium, and Cobalt Share, all versions through 12.6.1204.207. This vulnerability could enable an attacker to execute arbitrary code or disclose information.
Exploitation of this vulnerability could lead to unauthorized information disclosure or arbitrary code execution.
Users are advised to update to Ashlar-Vellum versions 12.6.1204.208 or higher. CISA recommends minimizing network exposure for control system devices, using firewalls to isolate control system networks from business networks, and employing secure remote access methods such as VPNs.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.