Vulnerability Description
Matrikon, a subsidary of Honeywell Matrikon OPC Server (all versions) is vulnerable to a condition where a low privileged user allowed to connect to the OPC server to use the functions of the IPersisFile to execute operating system processes with system-level privileges.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Honeywell | Matrikon Opc Server | All versions |
Related Weaknesses (CWE)
References
- https://www.cisa.gov/uscert/ics/advisories/icsa-22-144-02Third Party AdvisoryUS Government Resource
- https://www.cisa.gov/uscert/ics/advisories/icsa-22-144-02Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2022-1261?
CVE-2022-1261 is a vulnerability with a CVSS score of 5.8 (MEDIUM). Matrikon, a subsidary of Honeywell Matrikon OPC Server (all versions) is vulnerable to a condition where a low privileged user allowed to connect to the OPC server to use the functions of the IPersisF...
How severe is CVE-2022-1261?
CVE-2022-1261 has been rated MEDIUM with a CVSS base score of 5.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-1261?
Check the references section above for vendor advisories and patch information. Affected products include: Honeywell Matrikon Opc Server.