Rockwell Automation DriveTools SP v5.13 and below and Drives AOP v4.12 and below both contain a vulnerability that a local attacker with limited privileges may be able to exploit resulting in privilege escalation and complete control of the system.
2021-03-18T18:15:13.450
2024-11-21T05:50:26.157
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | rockwellautomation | drivetools_add-on_profiles | ≤ 4.12 | Yes |
Application | rockwellautomation | drivetools_sp | ≤ 5.13 | Yes |