Due to an improper input validation, an unauthenticated threat actor can send a malicious message to invoke a local or remote executable and cause a remote code execution condition on the Rockwell Automation ThinManager® ThinServer™.
Metrics
Affected Vendors & Products
References
History
Fri, 02 May 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:rockwellautomation:thinmanager:11.1.0:*:*:*:*:*:*:* cpe:2.3:a:rockwellautomation:thinmanager:11.2.0:*:*:*:*:*:*:* cpe:2.3:a:rockwellautomation:thinmanager:12.0.0:*:*:*:*:*:*:* cpe:2.3:a:rockwellautomation:thinmanager:12.1.0:*:*:*:*:*:*:* cpe:2.3:a:rockwellautomation:thinmanager:13.0.0:*:*:*:*:*:*:* cpe:2.3:a:rockwellautomation:thinmanager:13.1.0:*:*:*:*:*:*:* cpe:2.3:a:rockwellautomation:thinmanager:13.2.0:*:*:*:*:*:*:* |
|
| Metrics |
ssvc
|
Mon, 16 Sep 2024 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Rockwellautomation
Rockwellautomation thinmanager Rockwellautomation thinserver |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:rockwellautomation:thinmanager:*:*:*:*:*:*:*:* cpe:2.3:a:rockwellautomation:thinserver:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Rockwellautomation
Rockwellautomation thinmanager Rockwellautomation thinserver |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Rockwell
Published: 2024-06-25T15:53:33.899Z
Updated: 2025-08-27T20:42:59.382Z
Reserved: 2024-06-13T20:56:08.636Z
Link: CVE-2024-5988
Updated: 2024-08-01T21:25:03.324Z
Status : Modified
Published: 2024-06-25T16:15:24.937
Modified: 2024-11-21T09:48:42.173
Link: CVE-2024-5988
No data.