VYPR

Factorytalk Vantagepoint

by Rockwellautomation

CVEs (3)

  • CVE-2022-3158HigOct 17, 2022
    risk 0.57cvss 8.8epss 0.03

    Rockwell Automation FactoryTalk VantagePoint versions 8.0, 8.10, 8.20, 8.30, 8.31 are vulnerable to an input validation vulnerability. The FactoryTalk VantagePoint SQL Server lacks input validation when users enter SQL statements to retrieve information from the back-end…

  • CVE-2022-38743HigOct 17, 2022
    risk 0.57cvss 8.8epss 0.01

    Rockwell Automation FactoryTalk VantagePoint versions 8.0, 8.10, 8.20, 8.30, 8.31 are vulnerable to an improper access control vulnerability. The FactoryTalk VantagePoint SQL Server account could allow a malicious user with read-only privileges to execute SQL statements in the…

  • CVE-2023-2444HigMay 11, 2023
    risk 0.46cvss 7.1epss 0.00

    A cross site request forgery vulnerability exists in Rockwell Automation's FactoryTalk Vantagepoint. This vulnerability can be exploited in two ways. If an attacker sends a malicious link to a computer that is on the same domain as the FactoryTalk Vantagepoint server and a user…