Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Rockwell Automation FactoryTalk AssetCentre Deserialization of Untrusted Data
Vulnerability Description
A deserialization vulnerability exists in how the LogService.rem service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier verifies serialized data. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary commands in FactoryTalk AssetCentre.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:H
Vulnerability Type
可信数据的反序列化
Vulnerability Title
Rockwell Automation FactoryTalk AssetCentre 代码问题漏洞
Vulnerability Description
Rockwell Automation FactoryTalk AssetCentre是美国罗克韦尔(Rockwell Automation)公司的一个应用系统。提供集中式工具,用于保护,管理,版本控制,跟踪和报告整个工厂中与自动化相关的资产信息 Rockwell Automation FactoryTalk AssetCentre verifies serialized data 存在代码问题漏洞,该漏洞允许远程、未经身份验证的攻击者在FactoryTalk资产中心执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A