A vulnerability exists in the RunSearch function of SearchService service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier, which may allow for the execution of remote unauthenticated arbitrary SQL statements.
History

Wed, 16 Apr 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-04-16T16:39:37.678Z

Reserved: 2021-02-19T00:00:00.000Z

Link: CVE-2021-27472

cve-icon Vulnrichment

Updated: 2024-08-03T20:48:17.219Z

cve-icon NVD

Status : Modified

Published: 2022-03-23T20:15:09.097

Modified: 2024-11-21T05:58:03.657

Link: CVE-2021-27472

cve-icon Redhat

No data.