Rockwell Automation Update
2560Warning Date
Severity Level
Warning Number
Target Sector
24 February, 2021
● Critical
2021-2518
Energy - Water and Utilities - Manufacturing - Commercial Facilities - Government Facilities
Description:
Rockwell Automation has released a security update to address a vulnerability in the following product:
- FactoryTalk Services Platform
- Versions 6.10.00 and 6.11.00
Threats:
Remote Attacker could exploit this vulnerability by creating new users in the FactoryTalk Services Platform administration console. These new users could allow an attacker to modify or delete configuration and application data in other FactoryTalk software connected to the FactoryTalk Services Platform.
Best practice and Recommendations:
The CERT team encourages users to review Rockwell Automation security advisory and apply the necessary updates: