Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-3730 | A Local Code Injection Vulnerability exists in the product and version listed above. The vulnerability is due to incorrect default permissions and allows for DLLs to be executed with higher level permissions. |
Solution
Upgrade to V15 or apply patch. Answer ID 1152304
Workaround
Check the environment variables (PATH), and make sure FactoryTalk® View SE installation path (C:\Program Files (x86)\Common Files\Rockwell) is before all others
Tue, 28 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 28 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Local Code Injection Vulnerability exists in the product and version listed above. The vulnerability is due to incorrect default permissions and allows for DLLs to be executed with higher level permissions. | |
| Title | FactoryTalk® View Site Edition - Local Code Injection | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Rockwell
Published:
Updated: 2025-01-28T21:34:16.702Z
Reserved: 2025-01-21T21:21:03.342Z
Link: CVE-2025-24482
Updated: 2025-01-28T21:34:11.711Z
Status : Received
Published: 2025-01-28T21:15:18.687
Modified: 2025-01-28T21:15:18.687
Link: CVE-2025-24482
No data.
OpenCVE Enrichment
No data.
EUVD