CVE Vulnerabilities

CVE-2024-10386

Published: Oct 25, 2024 | Modified: Nov 05, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

CVE-2024-10386 IMPACT

An authentication vulnerability exists in the affected product. The vulnerability could allow a threat actor with network access to send crafted messages to the device, potentially resulting in database manipulation.

Affected Software

Name Vendor Start Version End Version
Thinmanager Rockwellautomation 11.2.0 (including) 11.2.10 (excluding)
Thinmanager Rockwellautomation 12.0.0 (including) 12.0.8 (excluding)
Thinmanager Rockwellautomation 12.1.0 (including) 12.1.9 (excluding)
Thinmanager Rockwellautomation 13.0.0 (including) 13.0.6 (excluding)
Thinmanager Rockwellautomation 13.1.0 (including) 13.1.4 (excluding)
Thinmanager Rockwellautomation 13.2.0 (including) 13.2.3 (excluding)
Thinmanager Rockwellautomation 14.0.0 (including) 14.0.0 (including)

References