Rockwell Automation OptixPanel™ Privilege Escalation Vulnerability via File Permissions
Published Sep 12, 2024
7.7
HIGHCVSS 4.0
EPSS 1.28%
Description
A privilege escalation vulnerability exists in the Rockwell Automation affected products. The vulnerability occurs due to improper default file permissions allowing users to exfiltrate credentials and escalate privileges.
Affected products
-
- Version 4.0.0.325StatusaffectedConstraints-
- Version
-
- Version 4.0.0.350StatusaffectedConstraints-
- Version
-
- Version 4.0.0.347StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Rockwell Automation | 2800C OptixPanel™ Compact | unaffected |
| ||||||
| Rockwell Automation | 2800S OptixPanel™ Standard | unaffected |
| ||||||
| Rockwell Automation | Embedded Edge Compute Module | unaffected |
|
Configuration 1
- ≥ 4.0.0.325 · < 4.0.2.116
Running on/with
- n/a
Configuration 2
- ≥ 4.0.0.350 · < 4.0.2.123
Running on/with
- n/a
Configuration 3
- ≥ 4.0.0.347 · < 4.0.2.106
Running on/with
- n/a
-
- Version 4.0.0.325StatusaffectedConstraints-
- Version
-
- Version 4.0.0.350StatusaffectedConstraints-
- Version
-
- Version 4.0.0.347StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Rockwell Automation | 2800c Optixpanel Compact | unaffected |
| ||||||
| Rockwell Automation | 2800s Optixpanel Standard | unaffected |
| ||||||
| Rockwell Automation | Embedded Edge Compute Module | unaffected |
|
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
Affected Product
First Known in Software Version
Corrected in Software Version
2800C OptixPanel™ Compact
4.0.0.325
4.0.2.116
2800S OptixPanel™ Standard
4.0.0.350
4.0.2.123
Embedded Edge Compute Module
4.0.0.347
4.0.2.106
Mitigations and Workarounds Customers using the affected software are encouraged to apply security best practices
* For information on how to mitigate Security Risks on industrial automation control systems, we encourage customers to implement our suggested security best practices https://rockwellautomation.custhelp.com/app/answers/answer_view/a_id/1085012/loc/en_US#__highlight to minimize the risk of the vulnerability.
References (2)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-49245 Advisory
- https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1964.html Vendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-49245 | Advisory | |
| https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1964.html | Vendor Advisory |
Change history (0)
No recorded changes yet.