VDB
CVE-2024-45824
CVE-2024-45824
PUBLISHED
Es besteht eine Schwachstelle in Rockwell Automation FactoryTalk. Dieser Fehler existiert in der Komponente View Site Edition wegen der Verkettung von mehreren anderen Schwachstellen. Ein entfernter, anonymer Angreifer kann diese Schwachstelle zur Ausführung von beliebigem Code ausnutzen.
EPSS 1.54% · 81.7th percentile
Risk Scores
EPSS Score
1.54%
81.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rockwell Automation | Rockwell Automation FactoryTalk View Site Edition 14.0 | |
| Rockwell Automation | Rockwell Automation FactoryTalk View Site Edition 12.0 | |
| Rockwell Automation | Rockwell Automation FactoryTalk View Site Edition 13.0 | |
| Rockwell Automation | Rockwell Automation FactoryTalk Batch View <3.00.00 |
Timeline
- Sep 12, 2024 CVE Published
- Sep 12, 2024 CVE Updated
- Sep 13, 2024 EPSS Score
- Oct 3, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Oct 23, 2024 EPSS Score
- Nov 11, 2024 EPSS Score
- Dec 2, 2024 EPSS Score
- Dec 22, 2024 EPSS Score
- Jan 11, 2025 EPSS Score
- Jan 30, 2025 EPSS Score
- Feb 17, 2025 Coalition ESS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-2132.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-2132 advisory
- https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD%201698.html advisory
- https://www.cisa.gov/news-events/ics-advisories/icsa-24-256-22 advisory
- https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1696.html advisory
- https://www.cisa.gov/news-events/ics-advisories/icsa-24-256-23 advisory