Security Advisory

CVE-2024-7987

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-26 14:40:29
Last updated 2024-08-26 17:29:09
Assigner Rockwell
State PUBLISHED

Description

A remote code execution vulnerability exists in the Rockwell Automation ThinManager® ThinServer™ that allows a threat actor to execute arbitrary code with System privileges. To exploit this vulnerability and a threat actor must abuse the ThinServer™ service by creating a junction and use it to upload arbitrary files.