ZeroHour

CVE-2023-1256

CVSS 3.1
9.8 critical
EPSS
<1%p50
Published
()
Modified
Description

The listed versions of AVEVA Plant SCADA and AVEVA Telemetry Server are vulnerable to an improper authorization exploit which could allow an unauthenticated user to remotely read data, cause denial of service, and tamper with alarm states.

Vendors
aveva
Products
aveva plant scada, telemetry server
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.