Rockwell Automation ISaGRAF Workbench software versions 6.0 through 6.6.9 are affected by a Path Traversal vulnerability. A crafted malicious .7z exchange file may allow an attacker to gain the privileges of the ISaGRAF Workbench software when opened. If the software is running at the SYSTEM level, then the attacker will gain admin level privileges. User interaction is required for this exploit to be successful.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-22-202-03 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2022-08-25T17:24:53
Updated: 2024-08-03T00:39:07.530Z
Reserved: 2022-07-18T00:00:00
Link: CVE-2022-2463
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-08-25T18:15:10.067
Modified: 2024-11-21T07:01:02.423
Link: CVE-2022-2463
Redhat
No data.