Rockwell Automation FactoryTalk View SE
75Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendcvss 9epss 47%
from disclosure to weapon0 days
Published on NVDJul 20
metasploitJun 22
exploitation probability
47%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
All versions of FactoryTalk View SE do not properly validate input of filenames within a project directory. A remote, unauthenticated attacker may be able to execute a crafted file on a remote endpoint that may result in remote code execution (RCE). Rockwell Automation recommends applying patch 1126289. Before installing this patch, the patch rollup dated 06 Apr 2020 or later MUST be applied. 1066644 – Patch Roll-up for CPR9 SRx.
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
Affected products
Rockwell Automation · FactoryTalk View SEpublic PoCs found — 1
cve_referencepacketstormsecurity.com/files/160156/Rockwell-FactoryTalk-View-SE-SCADA-Unauthenticated-Remote-Code-Execution.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.