Description
In Rockwell Automation FactoryTalk Services Platform, all versions, the redundancy host service (RdcyHost.exe) does not validate supplied identifiers, which could allow an unauthenticated, adjacent attacker to execute remote COM objects with elevated privileges.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-4349 | In Rockwell Automation FactoryTalk Services Platform, all versions, the redundancy host service (RdcyHost.exe) does not validate supplied identifiers, which could allow an unauthenticated, adjacent attacker to execute remote COM objects with elevated privileges. |
References
| Link | Providers |
|---|---|
| https://www.us-cert.gov/ics/advisories/icsa-20-170-04 |
|
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-04T11:48:57.627Z
Reserved: 2020-04-21T00:00:00.000Z
Link: CVE-2020-12033
No data.
Status : Modified
Published: 2020-06-23T22:15:14.057
Modified: 2024-11-21T04:59:09.173
Link: CVE-2020-12033
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD