Rockwell Automation FactoryTalk VantagePoint versions 8.0, 8.10, 8.20, 8.30, 8.31 are vulnerable to an input validation vulnerability. The FactoryTalk VantagePoint SQL Server lacks input validation when users enter SQL statements to retrieve information from the back-end database. If successfully exploited, this could allow a user with basic user privileges to perform remote code execution on the server.
Metrics
Affected Vendors & Products
References
History
Wed, 14 May 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
ssvc
|

Status: PUBLISHED
Assigner: Rockwell
Published:
Updated: 2025-05-14T18:11:50.528Z
Reserved: 2022-09-07T00:00:00.000Z
Link: CVE-2022-3158

Updated: 2024-08-03T01:00:10.242Z

Status : Modified
Published: 2022-10-17T22:15:10.437
Modified: 2025-05-14T19:15:49.460
Link: CVE-2022-3158

No data.