VYPR

Thinmanager

by Rockwellautomation

CVEs (22)

  • CVE-2024-45826MedSep 12, 2024
    risk 0.45cvss 6.8epss 0.12

    CVE-2024-45826 IMPACT Due to improper input validation, a path traversal and remote code execution vulnerability exists when the ThinManager® processes a crafted POST request. If exploited, a user can install an executable file.

  • CVE-2025-3618MedApr 15, 2025
    risk 0.36cvss 5.5epss 0.02

    A denial-of-service vulnerability exists in the Rockwell Automation ThinManager. The software fails to adequately verify the outcome of memory allocation while processing Type 18 messages. If exploited, a threat actor could cause a denial-of-service on the target software.

Page 2 of 2