Rockwell Automation FactoryTalk VantagePoint versions 8.0, 8.10, 8.20, 8.30, 8.31 are vulnerable to an improper access control vulnerability. The FactoryTalk VantagePoint SQL Server account could allow a malicious user with read-only privileges to execute SQL statements in the back-end database. If successfully exploited, this could allow the attacker to execute arbitrary code and gain access to restricted data.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Rockwell

Published: 2022-10-17T00:00:00

Updated: 2024-08-03T11:02:14.431Z

Reserved: 2022-08-24T00:00:00

Link: CVE-2022-38743

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-10-17T21:15:10.343

Modified: 2022-10-19T17:55:40.100

Link: CVE-2022-38743

cve-icon Redhat

No data.