Rockwell Automation ThinManager Information Disclosure Vulnerability

description-logoDescription

In affected versions, path traversal exists when processing a message of type 8 in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can exploit this vulnerability to download arbitrary files on the disk drive where ThinServer.exe is installed.

affected-products-logoAffected Applications

Rockwell Automation ThinManager

CVE References

CVE-2023-27856