CVE-2024-7961

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
12/09/2024
Last modified:
19/09/2024

Description

A path traversal vulnerability exists in the Rockwell Automation affected product. If exploited, the threat actor could upload arbitrary files to the server that could result in a remote code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rockwellautomation:pavilion8:*:*:*:*:*:*:*:* 6.0 (excluding)