Security Advisory

CVE-2024-7986

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-23 11:51:55
Last updated 2024-08-28 16:21:02
Assigner Rockwell
State PUBLISHED

Description

A vulnerability exists in the Rockwell Automation ThinManager® ThinServer that allows a threat actor to disclose sensitive information. A threat actor can exploit this vulnerability by abusing the ThinServer™ service to read arbitrary files by creating a junction that points to the target directory.