Security Advisory

CVE-2022-38742

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-09-23 15:24:18
Last updated 2025-05-22 18:22:27
Assigner Rockwell
State PUBLISHED

Description

Rockwell Automation ThinManager ThinServer versions 11.0.0 - 13.0.0 is vulnerable to a heap-based buffer overflow. An attacker could send a specifically crafted TFTP or HTTPS request, causing a heap-based buffer overflow that crashes the ThinServer process. If successfully exploited, this could expose the server to arbitrary remote code execution.