Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-7960


The Rockwell Automation affected product contains a vulnerability that allows a threat actor to view sensitive information and change settings. The vulnerability exists due to having an incorrect privilege matrix that allows users to have access to functions they should not.


Published

2024-09-12T21:15:03.153

Last Modified

2024-09-19T01:52:55.193

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.1 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-269
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application rockwellautomation pavilion8 < 6.0 Yes

References