CVE-2021-27468
SQL INJECTION CWE-89
The AosService.rem service exposes functions lacking proper authentication. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary SQL statements.
Read more: Critical Vulnerabilities Found in Rockwell FactoryTalk AssetCentre
Risk Information
- CVE ID
- CVE-2021-27468
- Vendor
- Rockwell Automation
- Product
- FactoryTalk AssetCentre
- CVSS v3
- 10