High severity7.8NVD Advisory· Published Jun 7, 2018· Updated Jun 17, 2026
CVE-2018-10619
CVE-2018-10619
Description
An unquoted search path or element in RSLinx Classic Versions 3.90.01 and prior and FactoryTalk Linx Gateway Versions 3.90.00 and prior may allow an authorized, but non-privileged local user to execute arbitrary code and allow a threat actor to escalate user privileges on the affected workstation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:rockwellautomation:rslinx_classic:*:*:*:*:*:*:*:*Range: <3.90.01
- cpe:2.3:a:rockwellautomation:factorytalk_linx_gateway:*:*:*:*:*:*:*:*Range: <3.90.00
- ICS-CERT/Rockwell Automation RSLinx Classic and FactoryTalk Linx Gatewayv5Range: RSLinx Classic Versions 3.90.01 and prior, FactoryTalk Linx Gateway Versions 3.90.00 and prior.
Patches
Vulnerability mechanics
References
3- www.exploit-db.com/exploits/44892/nvdExploitThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/104415nvdThird Party AdvisoryVDB Entry
- ics-cert.us-cert.gov/advisories/ICSA-18-158-01nvdThird Party AdvisoryUS Government ResourceVDB Entry
News mentions
0No linked articles in our index yet.