ZeroHour

CVE-2021-27472

CVSS 3.1
9.8 critical
EPSS
6%p93
Published
()
Modified
Description

A vulnerability exists in the RunSearch function of SearchService service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier, which may allow for the execution of remote unauthenticated arbitrary SQL statements.

Vendors
rockwellautomation
Products
factorytalk assetcentre
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news