Rockwell Automation DriveTools SP v5.13 and below and Drives AOP v4.12 and below both contain a vulnerability that a local attacker with limited privileges may be able to exploit resulting in privilege escalation and complete control of the system.
The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.
Link | Tags |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-21-042-02 | third party advisory us government resource |
https://rockwellautomation.custhelp.com/app/answers/answer_view/a_id/1129798 | permissions required vendor advisory |