CVE-2019-10970: Critical severity rockwell automation panelview 5510 vulnerability
In Rockwell Automation PanelView 5510 (all versions manufactured before March 13, 2019 that have never been updated to v4.003, v5.002, or later), a remote, unauthenticated threat actor with access to an affected PanelView 5510 Graphic Display, upon successful exploit, may boot-up the terminal and gain root-level access to the device’s file system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10970?
CVE-2019-10970 is considered a high-severity vulnerability due to its potential for remote unauthenticated access.
How do I fix CVE-2019-10970?
To fix CVE-2019-10970, update the PanelView 5510 firmware to version 4.003 or later.
What systems are affected by CVE-2019-10970?
CVE-2019-10970 affects all versions of Rockwell Automation PanelView 5510 manufactured before March 13, 2019, that have not been updated.
Can CVE-2019-10970 be exploited remotely?
Yes, CVE-2019-10970 can be exploited remotely by unauthorized threat actors with access to the affected device.
What are the potential consequences of exploiting CVE-2019-10970?
Exploiting CVE-2019-10970 may allow an attacker to gain control over the PanelView 5510 terminal and execute unauthorized commands.