Rockwell Automation ISaGRAF Workbench software versions 6.0 through 6.6.9 are affected by a Path Traversal vulnerability. A crafted malicious .7z exchange file may allow an attacker to gain the privileges of the ISaGRAF Workbench software when opened. If the software is running at the SYSTEM level, then the attacker will gain admin level privileges. User interaction is required for this exploit to be successful.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2022-08-25T17:24:53

Updated: 2024-08-03T00:39:07.530Z

Reserved: 2022-07-18T00:00:00

Link: CVE-2022-2463

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-08-25T18:15:10.067

Modified: 2024-11-21T07:01:02.423

Link: CVE-2022-2463

cve-icon Redhat

No data.