CVE-2024-8533

A privilege escalation vulnerability exists in the Rockwell Automation affected products. The vulnerability occurs due to improper default file permissions allowing users to exfiltrate credentials and escalate privileges.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:rockwellautomation:2800c_optixpanel_compact_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:2800c_optixpanel_compact:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:rockwellautomation:2800s_optixpanel_standard_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:2800s_optixpanel_standard:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:rockwellautomation:embedded_edge_compute_module_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:rockwellautomation:embedded_edge_compute_module:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-09-12 20:15

Updated : 2024-09-19 01:57


NVD link : CVE-2024-8533

Mitre link : CVE-2024-8533

CVE.ORG link : CVE-2024-8533


JSON object : View

Products Affected

rockwellautomation

  • embedded_edge_compute_module
  • 2800c_optixpanel_compact_firmware
  • 2800c_optixpanel_compact
  • embedded_edge_compute_module_firmware
  • 2800s_optixpanel_standard_firmware
  • 2800s_optixpanel_standard
CWE
CWE-269

Improper Privilege Management

CWE-276

Incorrect Default Permissions