VYPR

Factorytalk Diagnostics Viewer

by Rockwellautomation

CVEs (3)

  • CVE-2020-6967CriMar 23, 2020
    risk 0.64cvss 9.8epss 0.06

    In Rockwell Automation all versions of FactoryTalk Diagnostics software, a subsystem of the FactoryTalk Services Platform, FactoryTalk Diagnostics exposes a .NET Remoting endpoint via RNADiagnosticsSrv.exe at TCPtcp/8082, which can insecurely deserialize untrusted data.

  • CVE-2020-5807HigDec 29, 2020
    risk 0.51cvss 7.5epss 0.34

    An unauthenticated remote attacker can send data to RsvcHost.exe listening on TCP port 5241 to add entries in the FactoryTalk Diagnostics event log. The attacker can specify long fields in the log entry, which can cause an unhandled exception in wcscpy_s() if a local user opens…

  • CVE-2011-2957Jul 28, 2011
    risk 0.00cvss epss 0.01

    Unspecified vulnerability in Rockwell Automation FactoryTalk Diagnostics Viewer before V2.30.00 (CPR9 SR3) allows local users to execute arbitrary code via a crafted FactoryTalk Diagnostics Viewer (.ftd) configuration file, which triggers memory corruption.