CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 10.0. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2021-27476
Severity
CRITICAL
CVSS
10
EPSS
4.38%
Original NVD Description
A vulnerability exists in the SaveConfigFile function of the RACompare Service, which may allow for OS command injection. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary commands in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier.
Related CVEs
Other vulnerabilities affecting the same vendor(s)