A privilege escalation vulnerability exists in Rockwell Automation FactoryTalk® Service Platform (FTSP). If exploited, a malicious user with basic user group privileges could potentially sign into the software and receive FTSP Administrator Group privileges. A threat actor could potentially read and modify sensitive data, delete data and render the FTSP system unavailable.
An attacker with an account in the FTSP basic user group can log into the software and, as a result of improperly configured permissions (CWE-732), obtain FTSP administrator group privileges. The mechanism does not require victim interaction or high input privileges, but does require a certain level of attack complexity (AC:H). After privilege escalation, the attacker operates in an extended security context that goes beyond the scope of the originally granted account.
An attacker can read and modify sensitive data, delete data, and cause the FTSP system to become unavailable, which in an industrial environment may result in disruption of production or operational processes.
Apply patches available from the manufacturer according to the references — detailed instructions are contained in Rockwell Automation advisory SD1662 available at: https://www.rockwellautomation.com/en-us/support/advisory.SD1662.html
Rockwell Automation FactoryTalk® Service Platform (FTSP) — versions indicated in the manufacturer's references (advisory SD1662)
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:HRockwellautomation Factorytalk Services Platform
APPRockwellautomation< 2.74
Related vulnerabilities
Rockwell Automation — pominięcie weryfikacji klucza uwierzytelnienia w sterownikach Logix
Rockwell Automation FactoryTalk — przechwycenie tokenu uwierzytelniającego (brak podpisu cyfrowego)
Błędna implementacja SHA-256 w Rockwell FactoryTalk Services Platform
Niebezpieczna deserializacja w Rockwell FactoryTalk Diagnostics (port TCP/8082)
Due to inadequate code logic, a previously unauthenticated threat actor could potentially obtain a local Wind...