IAB.exe in Rockwell Automation Integrated Architecture Builder (IAB) before 9.6.0.8 and 9.7.x before 9.7.0.2 allows remote attackers to execute arbitrary code via a crafted project file.
2016-04-06T23:59:15.897
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 6.3 (MEDIUM)
AV:L/AC:M/Au:N/C:C/I:C/A:C
3.4
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | rockwellautomation | integrated_architecture_builder | ≤ 9.6.0.7 | Yes |
Application | rockwellautomation | integrated_architecture_builder | 9.7.0.0 | Yes |
Application | rockwellautomation | integrated_architecture_builder | 9.7.0.1 | Yes |