Rewterz
Multiple Microsoft Windows Zero-Day Vulnerabilities Exploited in the Wild
September 11, 2024
Integrating-Threat-Intelligence-into-Your-Security-Operations-Center-SOC
Integrating Threat Intelligence into Your Security Operations Center (SOC)
September 11, 2024

ICS: Rockwell Automation FactoryTalk View SE Vulnerability

Severity

High

Analysis Summary

CVE-2024-4609

Rockwell Automation FactoryTalk View SE is vulnerable to SQL injection. A remote authenticated attacker could send specially crafted SQL statements to view, add, modify, or delete information in the back-end database.

Impact

  • Data Manipulation

Indicators of Compromise

CVE

  • CVE-2024-4609

Affected Vendors

Rockwell Automation

Affected Products

  • Rockwell Automation FactoryTalk View SE

Remediation

Upgrade to the latest version of FactoryTalk View SE, available from the Rockwell Automation Website.

Rockwell Automation Website