Product
rockwellautomation factorytalk view
18 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-9064
CVE-2025-9063
CVE-2024-37365
CVE-2024-45824
CVE-2024-7513
CVE-2024-37369
CVE-2024-37368
CVE-2024-37367
CVE-2024-4609
CVE-2024-21914
CVE-2023-46289
CVE-2023-2071
CVE-2020-14481
CVE-2020-14480
CVE-2020-12031
CVE-2020-12028
CVE-2020-12027
CVE-2020-12029
<= 15.0
A path traversal security issue exists within FactoryTalk View Machine Edition, allowing unauthenticated attackers on the same net
<= 15.0
An authentication bypass security issue exists within FactoryTalk View Machine Edition Web Browser ActiveX control. Exploitation
all versions
A remote code execution vulnerability exists in the affected product. The vulnerability allows users to save projects within the p
>= 12.0 and <= 14.0
CVE-2024-45824 IMPACT A remote code vulnerability exists in the affected products. The vulnerability occurs when chained with P
>= 13.0
CVE-2024-7513 IMPACT A code execution vulnerability exists in the affected product. The vulnerability occurs due to improper defa
>= 12.0 and < 14.0
A privilege escalation vulnerability exists in the affected product. The vulnerability allows low-privilege users to edit scripts,
>= 11.0 and < 14.0
A user authentication vulnerability exists in the Rockwell Automation FactoryTalk® View SE. The vulnerability allows a user from
>= 12.0 and < 14.0
A user authentication vulnerability exists in the Rockwell Automation FactoryTalk® View SE v12. The vulnerability allows a user f
< 11.0
A vulnerability exists in the Rockwell Automation FactoryTalk® View SE Datalog function that could allow a threat actor to inject
< 14.0
A vulnerability exists in the affected product that allows a malicious user to restart the Rockwell Automation PanelView™ Plus 7
>= 11.0 and <= 13.0
Rockwell Automation FactoryTalk View Site Edition insufficiently validates user input, which could potentially allow threat actors
<= 13.0
Rockwell Automation FactoryTalk View Machine Edition on the PanelView Plus, improperly verifies user’s input, which allows unaut
<= 9.0
The DeskLock tool provided with FactoryTalk View SE uses a weak encryption algorithm that may allow a local, authenticated attacke
<= 9.0
Due to usernames/passwords being stored in plaintext in Random Access Memory (RAM), a local, authenticated attacker could gain acc
all versions
In all versions of FactoryTalk View SE, after bypassing memory corruption mechanisms found in the operating system, a local, authe
all versions
In all versions of FactoryTalk View SEA remote, an authenticated attacker may be able to utilize certain handlers to interact with
all versions
All versions of FactoryTalk View SE disclose the hostnames and file paths for certain files within the system. A remote, authentic
all versions
All versions of FactoryTalk View SE do not properly validate input of filenames within a project directory. A remote, unauthentica