In affected versions, path traversal exists when processing a message of type 8 in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can exploit this vulnerability to download arbitrary files on the disk drive where ThinServer.exe is installed.
CVSS
No CVSS.
References
Configurations
No configuration.
Information
Published : 2023-03-21 17:15
Updated : 2023-03-22 05:48
NVD link : CVE-2023-27856
Mitre link : CVE-2023-27856
JSON object : View
CWE
No CWE.
Products Affected
No product.