Path Traversal Vulnerability in Rockwell Automation ISaGRAF Workbench Software

Path Traversal Vulnerability in Rockwell Automation ISaGRAF Workbench Software

CVE-2022-2463 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Rockwell Automation ISaGRAF Workbench software versions 6.0 through 6.6.9 are affected by a Path Traversal vulnerability. A crafted malicious .7z exchange file may allow an attacker to gain the privileges of the ISaGRAF Workbench software when opened. If the software is running at the SYSTEM level, then the attacker will gain admin level privileges. User interaction is required for this exploit to be successful.

Learn more about our Cis Benchmark Audit For Microsoft Exchange Server.