Vulnerability Details CVE-2021-27464
The ArchiveService.rem service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier exposes functions lacking proper authentication. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary SQL statements.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.0%
CVSS Severity
CVSS v3 Score 10.0
CVSS v2 Score 7.5
Products affected by CVE-2021-27464
-
cpe:2.3:a:rockwellautomation:factorytalk_assetcentre:-
-
cpe:2.3:a:rockwellautomation:factorytalk_assetcentre:10.00
-
cpe:2.3:a:rockwellautomation:factorytalk_assetcentre:5.00.00
-
cpe:2.3:a:rockwellautomation:factorytalk_assetcentre:6.00.00
-
cpe:2.3:a:rockwellautomation:factorytalk_assetcentre:6.10.00
-
cpe:2.3:a:rockwellautomation:factorytalk_assetcentre:7.00.00
-
cpe:2.3:a:rockwellautomation:factorytalk_assetcentre:7.10.01
-
cpe:2.3:a:rockwellautomation:factorytalk_assetcentre:8.00.00
-
cpe:2.3:a:rockwellautomation:factorytalk_assetcentre:9.00.00