ZDI-23-1050: (0Day) (Pwn2Own) Inductive Automation Ignition ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability
This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Inductive Automation Ignition. Authentication is not required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-1050?
ZDI-23-1050 is classified as a denial-of-service vulnerability that poses a significant risk to affected installations of Inductive Automation Ignition.
How do I fix ZDI-23-1050?
To mitigate ZDI-23-1050, users should update to the latest version of Ignition as provided by Inductive Automation.
Who is affected by ZDI-23-1050?
ZDI-23-1050 affects all installations of Inductive Automation Ignition 8 that are not updated to the fixed version.
Can ZDI-23-1050 be exploited without authentication?
Yes, ZDI-23-1050 can be exploited by remote attackers without the need for authentication.
What are the implications of ZDI-23-1050?
Exploitation of ZDI-23-1050 allows for a denial-of-service condition, potentially leading to significant downtime for affected systems.