CVE-2024-10944: Rockwell Automation Factorytalk Updater
High severity, CVSS 8.4. EPSS: 0.5% chance of exploitation in the next 30 days.
A Remote Code Execution vulnerability exists in the affected product. The vulnerability requires a high level of permissions and exists due to improper input validation resulting in the possibility of a malicious Updated Agent being deployed.
Affected products
- Rockwell Automation Factorytalk Updater: before 4.20.00 (fixed in 4.20.00)
- Rockwellautomation Factorytalk Updater: from 4.00.00, up to and including 4.20.00
Published 2024-11-12. Last modified 2026-06-17.