CVE-2019-10970
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In Rockwell Automation PanelView 5510 (all versions manufactured before March 13, 2019 that have never been updated to v4.003, v5.002, or later), a remote, unauthenticated threat actor with access to an affected PanelView 5510 Graphic Display, upon successful exploit, may boot-up the terminal and gain root-level access to the device’s file system.
En Rockwell Automation PanelView 5510 (todas las versiones fabricadas antes del 13 de marzo de 2019 que nunca se han actualizado a v4.003, v5.002 o posterior), un aplicantef de amenazas remoto no autenticado con acceso a una pantalla gráfica PanelView 5510 afectada, una vez que se ha realizado la explotación con éxito , puede arrancar el terminal y obtener acceso de nivel raíz al sistema de archivos del dispositivo.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-04-08 CVE Reserved
- 2019-07-11 CVE Published
- 2024-02-24 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-284: Improper Access Control
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/109105 | Third Party Advisory | |
https://www.us-cert.gov/ics/advisories/icsa-19-190-02 | Mitigation |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Rockwellautomation Search vendor "Rockwellautomation" | Panelview 5510 Firmware Search vendor "Rockwellautomation" for product "Panelview 5510 Firmware" | < 4.003 Search vendor "Rockwellautomation" for product "Panelview 5510 Firmware" and version " < 4.003" | - |
Affected
| in | Rockwellautomation Search vendor "Rockwellautomation" | Panelview 5510 Search vendor "Rockwellautomation" for product "Panelview 5510" | - | - |
Safe
|
Rockwellautomation Search vendor "Rockwellautomation" | Panelview 5510 Firmware Search vendor "Rockwellautomation" for product "Panelview 5510 Firmware" | >= 5.000 < 5.002 Search vendor "Rockwellautomation" for product "Panelview 5510 Firmware" and version " >= 5.000 < 5.002" | - |
Affected
| in | Rockwellautomation Search vendor "Rockwellautomation" | Panelview 5510 Search vendor "Rockwellautomation" for product "Panelview 5510" | - | - |
Safe
|