An unprotected logging route may allow an attacker to write endless log statements into the database without space limits or authentication. This results in consuming the entire available hard-disk space on the Ignition 8 Gateway (versions prior to 8.0.10), causing a denial-of-service condition.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsa-20-112-01 | Third Party Advisory US Government Resource |
Configurations
Information
Published : 2020-04-28 12:15
Updated : 2021-12-20 15:01
NVD link : CVE-2020-10641
Mitre link : CVE-2020-10641
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
inductiveautomation
- ignition_gateway