Rockwell Automation Alert
2441Warning Date
Severity Level
Warning Number
Target Sector
24 July, 2022
● High
2022-5056
Manufacturing
Rockwell Automation has released a security alert to address several vulnerabilities in the following product:
- ISaGRAF Workbench Version 6.0 through 6.6.9
Attacker could exploit this vulnerability by doing the following:
- Execute arbitrary code
- Escalation of privilege
- Directory Traversal
Best practice and Recommendations:
Rockwell Automation recommends the following mitigations and compensating controls in order to reduce risk associated with these vulnerabilities:
- Minimizing network exposure for all control system devices and/or systems
- Locating control system networks and devices behind firewalls and isolating them from the enterprise/business network
- When remote access is required, use secure methods such as virtual private networks (VPNs)
For more information: