The listed versions of AVEVA Plant SCADA and AVEVA Telemetry Server are vulnerable to an improper authorization exploit which could allow an unauthenticated user to remotely read data, cause denial of service, and tamper with alarm states.
History

Thu, 16 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-01-16T21:42:14.018Z

Reserved: 2023-03-07T16:15:30.636Z

Link: CVE-2023-1256

cve-icon Vulnrichment

Updated: 2024-08-02T05:40:59.774Z

cve-icon NVD

Status : Modified

Published: 2023-03-16T19:15:18.227

Modified: 2024-11-21T07:38:46.503

Link: CVE-2023-1256

cve-icon Redhat

No data.