Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
rockwellautomation connected components workbench vulnerabilities and exploits
(subscribe to this query)
6.2
CVSSv2
CVE-2017-5176
A DLL Hijack issue exists in Rockwell Automation Connected Components Workbench (CCW). The following versions are affected: Connected Components Workbench - Developer Edition, v9.01.00 and previous versions: 9328-CCWDEVENE, 9328-CCWDEVZHE, 9328-CCWDEVFRE, 9328-CCWDEVITE, 9328-CCW...
Rockwellautomation Connected Components Workbench
Rockwellautomation Connected Components Workbench
6.8
CVSSv2
CVE-2021-27475
Rockwell Automation Connected Components Workbench v12.00.00 and prior does not limit the objects that can be deserialized. This vulnerability allows malicious users to craft a malicious serialized object that, if opened by a local user in Connected Components Workbench, may resu...
Rockwellautomation Connected Components Workbench
6.8
CVSSv2
CVE-2021-27471
The parsing mechanism that processes certain file types does not provide input sanitization for file paths. This may allow an malicious user to craft malicious files that, when opened by Rockwell Automation Connected Components Workbench v12.00.00 and prior, can traverse the file...
Rockwellautomation Connected Components Workbench
6.9
CVSSv2
CVE-2021-27473
Rockwell Automation Connected Components Workbench v12.00.00 and prior does not sanitize paths specified within the .ccwarc archive file during extraction. This type of vulnerability is also commonly referred to as a Zip Slip. A local, authenticated attacker can create a maliciou...
Rockwellautomation Connected Components Workbench
7.5
CVSSv2
CVE-2014-5424
Rockwell Automation Connected Components Workbench (CCW) prior to 7.00.00 allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via an invalid property value to an ActiveX control that was built with an outdated compiler...
Rockwellautomation Connected Components Workbench
4.3
CVSSv2
CVE-2022-1018
When opening a malicious solution file provided by an attacker, the application suffers from an XML external entity vulnerability due to an unsafe call within a dynamic link library file. An attacker could exploit this to pass data from local files to a remote web server, leading...
Rockwellautomation Connected Components Workbench
Rockwellautomation Isagraf
Rockwellautomation Safety Instrumented Systems Workstation
6.8
CVSSv2
CVE-2022-1118
Connected Components Workbench (v13.00.00 and prior), ISaGRAF Workbench (v6.0 though v6.6.9), and Safety Instrumented System Workstation (v1.2 and prior (for Trusted Controllers)) do not limit the objects that can be deserialized. This allows malicious users to craft a malicious ...
Rockwellautomation Safety Instrumented Systems Workstation
Rockwellautomation Isagraf Workbench
Rockwellautomation Connected Component Workbench
5.5
CVSSv2
CVE-2020-11999
FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Version 12 and prior, ControlFLASH: Version 14 and later, ControlFLASH Plus: Version 1 and later, FactoryTalk Asset Centre: Version 9 and later, FactoryTalk Linx Comm...
Rockwellautomation Factorytalk Linx 6.00
Rockwellautomation Factorytalk Linx 6.10
Rockwellautomation Factorytalk Linx 6.11
Rockwellautomation Rslinx Classic
5
CVSSv2
CVE-2020-12003
FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Version 12 and prior, ControlFLASH: Version 14 and later, ControlFLASH Plus: Version 1 and later, FactoryTalk Asset Centre: Version 9 and later, FactoryTalk Linx Comm...
Rockwellautomation Factorytalk Linx 6.00
Rockwellautomation Factorytalk Linx 6.10
Rockwellautomation Factorytalk Linx 6.11
Rockwellautomation Rslinx Classic
7.5
CVSSv2
CVE-2020-12001
FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Version 12 and prior, ControlFLASH: Version 14 and later, ControlFLASH Plus: Version 1 and later, FactoryTalk Asset Centre: Version 9 and later, FactoryTalk Linx Comm...
Rockwellautomation Factorytalk Linx 6.00
Rockwellautomation Factorytalk Linx 6.10
Rockwellautomation Factorytalk Linx 6.11
Rockwellautomation Rslinx Classic
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30043
camera
CVE-2023-40404
CVE-2024-2793
client side
CVE-2024-4469
CVE-2024-3565
CVE-2024-29825
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »