Rockwell Automation ISaGRAF Workbench software versions 6.0 through 6.6.9 are affected by a Path Traversal vulnerability. A crafted malicious .7z exchange file may allow an attacker to gain the privileges of the ISaGRAF Workbench software when opened. If the software is running at the SYSTEM level, then the attacker will gain admin level privileges. User interaction is required for this exploit to be successful.
History

Wed, 16 Apr 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-04-16T16:11:52.314Z

Reserved: 2022-07-18T00:00:00.000Z

Link: CVE-2022-2463

cve-icon Vulnrichment

Updated: 2024-08-03T00:39:07.530Z

cve-icon NVD

Status : Modified

Published: 2022-08-25T18:15:10.067

Modified: 2024-11-21T07:01:02.423

Link: CVE-2022-2463

cve-icon Redhat

No data.