Rockwell Automation ISaGRAF Workbench是美国Rockwell Automation公司的一个用于开发高度可移植应用程序的完整编程环境。 Rockwell Automation ISaGRAF Workbench 6.0至6.6.9版本存在代码问题漏洞,该漏洞源于ISaGRAF Workbench没有限制可以被反序列化的对象,该漏洞允许攻击者制作恶意的序列化对象,如果本地用户在ISaGRAF Workbench中打开,可能导致远程代码执行,这个漏洞需要用户互动才能成功利用
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Rockwell Automation | ISaGRAF Workbench | 6.0 ~ 6.6.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-2464 | 7.7 HIGH | ISaGRAF Workbench Improper Limitation of a Pathname to a Restricted Directory ('Path Trave |
| CVE-2022-2463 | 6.1 MEDIUM | ISaGRAF Workbench Improper Limitation of a Pathname to a Restricted Directory ('Path Trave |
No comments yet