First published: Fri Oct 25 2024(Updated: )
CVE-2024-10386 IMPACT An authentication vulnerability exists in the affected product. The vulnerability could allow a threat actor with network access to send crafted messages to the device, potentially resulting in database manipulation.
Credit: PSIRT@rockwellautomation.com
Affected Software | Affected Version | How to fix |
---|---|---|
Rockwellautomation Thinmanager | >=11.2.0<11.2.10 | |
Rockwellautomation Thinmanager | >=12.0.0<12.0.8 | |
Rockwellautomation Thinmanager | >=12.1.0<12.1.9 | |
Rockwellautomation Thinmanager | >=13.0.0<13.0.6 | |
Rockwellautomation Thinmanager | >=13.1.0<13.1.4 | |
Rockwellautomation Thinmanager | >=13.2.0<13.2.3 | |
Rockwellautomation Thinmanager | =14.0.0 |
· If able, navigate to the ThinManager® download site https://thinmanager.com/downloads/ and upgrade to a corrected version of ThinManager® 11.2.10 12.0.8 12.1.9 13.0.6 13.1.4 13.2.3 14.0.1
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.