Known vulnerabilities in Connected Components Workbench
Vendor:
Rockwell Automation
Software:
Connected Components Workbench
Software CPE:
cpe:2.3:a:rockwell_automation:connected_components_workbench:*:*:*:*:*:*:*:*
Website:
https://www.rockwellautomation.com/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU61905 - Deserialization of Untrusted Data CVE-2022-1118 |
CWE-502 | High | 20.00.00 | 06.04.2022 |
SB2022040601 |
||
| #VU61728 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2022-1018 |
CWE-611 | Medium | 13.00.00 | 30.03.2022 |
SB2022033008 |
||
| #VU53243 - Improper input validation CVE-2021-27473 |
CWE-20 | Medium | 13.00.00 | 14.05.2021 |
SB2021051401 |
||
| #VU53242 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-27471 |
CWE-22 | Medium | 13.00.00 | 14.05.2021 |
SB2021051401 |
||
| #VU53241 - Deserialization of Untrusted Data CVE-2021-27475 |
CWE-502 | High | 13.00.00 | 14.05.2021 |
SB2021051401 |