CVE-2024-37365
12.11.2024, 15:15
A remote code execution vulnerability exists in the affected product. The vulnerability allows users to save projects within the public directory allowing anyone with local access to modify and/or delete files. Additionally, a malicious user could potentially leverage this vulnerability to escalate their privileges by changing the macro to execute arbitrary code.Enginsight
Vendor | Product | Version |
---|---|---|
rockwellautomation | factorytalk_view | 14.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration