Inductive Automation Ignition OPC UA Quick Client Task Scheduling Exposed Dangerous Function Remote Code Execution Vulnerability
CVE-2023-38124
What is CVE-2023-38124?
A significant vulnerability has been identified in Inductive Automation's Ignition platform, specifically within the Ignition Gateway server. This flaw involves the exposure of a dangerous function that enables remote attackers to execute arbitrary code on affected installations. Authentication is needed to exploit this vulnerability, which poses a risk as it allows execution of code with SYSTEM-level privileges. As a result, timely updates and security measures are crucial for protecting installations against potential exploitations.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Ignition 8.1.24
References
EPSS Score
53% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
