Aller au contenu

Fiche vulnérabilité

CVE-2022-2463 : faille élevée rockwellautomation isagraf workbench (CVSS 7.8)

Description

Rockwell Automation ISaGRAF Workbench software versions 6.0 through 6.6.9 are affected by a Path Traversal vulnerability. A crafted malicious .7z exchange file may allow an attacker to gain the privileges of the ISaGRAF Workbench software when opened. If the software is running at the SYSTEM level, then the attacker will gain admin level privileges. User interaction is required for this exploit to be successful.

En bref

Sévérité
Élevée (CVSS 7.8)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
25 août 2022
Dernière mise à jour
17 juin 2026

Produits concernés

  • rockwellautomation isagraf workbench

Références

Rechercher une autre vulnérabilité dans la base CVE