← All Advisories

CVE-2024-7956

Last refreshed2026-10-06

Status: UPDATED  |  Advisory ID: CVE-2024-7956

Key Details

CVECVE-2024-7956
CVSS Score / Version7.6 (High) / CVSS v4.0
Updated2026-09-03
Affected productsRockwell Automation DataMosaix™ Private Cloud
Classified asCWE-287 (Improper Authentication)

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
Rockwell AutomationDataMosaix™ Private Cloud
SubsystemsGeneral OT
SectorsMultiple

What to Know

A vulnerability exists in the affected products that allows a threat actor to gain access to user’s projects. To exploit this vulnerability the threat actor must have basic user privileges. If exploited, the threat actor can modify and delete the project. (NVD)

What to Do

Monitor Rockwell Automation's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2024-7956
CVEhttps://www.cve.org/CVERecord?id=CVE-2024-7956