Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Rockwell Automation FactoryTalk® AssetCentre Data Exposure Vulnerability
Vulnerability Description
A data exposure vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to insecure storage of FactoryTalk® Security user tokens, which could allow a threat actor to steal a token and, impersonate another user.
CVSS Information
N/A
Vulnerability Type
不充分的凭证保护机制
Vulnerability Title
Rockwell Automation FactoryTalk AssetCentre 安全漏洞
Vulnerability Description
Rockwell Automation FactoryTalk AssetCentre是美国罗克韦尔(Rockwell Automation)公司的一个应用系统。提供集中式工具,用于保护,管理,版本控制,跟踪和报告整个工厂中与自动化相关的资产信息 Rockwell Automation FactoryTalk AssetCentre V15.00.001之前版本存在安全漏洞,该漏洞源于用户令牌存储不安全。攻击者利用该漏洞可以窃取令牌并冒充其他用户。
CVSS Information
N/A
Vulnerability Type
N/A