Status: UPDATED
| Advisory ID: CVE-2024-7956
Key Details
| CVE | CVE-2024-7956 |
| CVSS Score / Version | 7.6 (High) / CVSS v4.0 |
| Updated | 2026-09-03 |
| Affected products | Rockwell Automation DataMosaix™ Private Cloud |
| Classified as | CWE-287 (Improper Authentication) |
Affected Products, Subsystems & Sectors
| Subsystems | General OT |
| Sectors | Multiple |
What to Know
A vulnerability exists in the affected products that allows a threat actor to gain access to user’s projects. To exploit this vulnerability the threat actor must have basic user privileges. If exploited, the threat actor can modify and delete the project. (NVD)
What to Do
Monitor Rockwell Automation's web page for any future patch releases.
References