CVE-2022-38743
17.10.2022, 21:15
Rockwell Automation FactoryTalk VantagePoint versions 8.0, 8.10, 8.20, 8.30, 8.31 are vulnerable to an improper access control vulnerability. The FactoryTalk VantagePoint SQL Server account could allow a malicious user with read-only privileges to execute SQL statements in the back-end database. If successfully exploited, this could allow the attacker to execute arbitrary code and gain access to restricted data.Enginsight
Vendor | Product | Version |
---|---|---|
rockwellautomation | factorytalk_vantagepoint | 8.0 |
rockwellautomation | factorytalk_vantagepoint | 8.10 |
rockwellautomation | factorytalk_vantagepoint | 8.20 |
rockwellautomation | factorytalk_vantagepoint | 8.30 |
rockwellautomation | factorytalk_vantagepoint | 8.31 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration