First published: Tue Aug 01 2023(Updated: )
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Inductive Automation Ignition. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.
Affected Software | Affected Version | How to fix |
---|---|---|
Inductive Automation Ignition 8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-23-1013 is high due to its ability to allow remote code execution.
To fix ZDI-23-1013, update Inductive Automation Ignition to the latest version provided by the vendor.
ZDI-23-1013 affects installations of Inductive Automation Ignition 8.
Yes, ZDI-23-1013 can be exploited remotely, although it requires authentication.
Yes, the existing authentication mechanism can be bypassed in ZDI-23-1013.