Fiche vulnérabilité
CVE-2023-2914 : faille élevée rockwellautomation thinmanager… (CVSS 7.5)
Description
The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability, an integer overflow condition exists in the affected products. When the ThinManager processes incoming messages, a read access violation occurs and terminates the process. A malicious user could exploit this vulnerability by sending a crafted synchronization protocol message and causing a denial of service condition in the software.
En bref
- Sévérité
- Élevée (CVSS 7.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 17 août 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- rockwellautomation thinmanager thinserver