Rockwell Automation Unsecured Private Keys in FactoryTalk® System Services
CVE-2024-6325
6.5MEDIUM
Key Information:
- Vendor
Rockwell Automation
- Vendor
- CVE Published:
- 16 July 2024
What is CVE-2024-6325?
The v6.40 release of Rockwell Automation FactoryTalk® Policy Manager CVE-2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1550.html and CVE-2022-1161 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1585.html by implementing CIP security and did not update to the versions of the software CVE-2022-1161 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1585.html and CVE-2022-1161. https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1585.html
Affected Version(s)
FactoryTalk® Policy Manager (FTPM) v6.40
FactoryTalk® System Services (installed via FTPM) 6.40