ZDI-23-1045: (0Day) Inductive Automation Ignition AbstractGatewayFunction Deserialization of Untrusted Data Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Inductive Automation Ignition. Authentication is required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-1045?
The ZDI-23-1045 vulnerability is considered to be critical due to its potential for remote code execution.
How do I fix ZDI-23-1045?
To fix ZDI-23-1045, you should update to the latest version of Inductive Automation Ignition that addresses this vulnerability.
Who is affected by ZDI-23-1045?
All installations of Inductive Automation Ignition that are running a vulnerable version are affected by ZDI-23-1045.
Is authentication required to exploit ZDI-23-1045?
Yes, authentication is required for an attacker to exploit the ZDI-23-1045 vulnerability.
What can attackers do with ZDI-23-1045?
Attackers can execute arbitrary code on affected installations of Inductive Automation Ignition through the ZDI-23-1045 vulnerability.