Aug. 1, 2023, 5 a.m. |

ZDI: Published Advisories www.zerodayinitiative.com

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Inductive Automation Ignition. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.

arbitrary code attackers authentication automation client code code execution domain exploit ignition inductive automation opc opc ua policy pwn2own remote code remote code execution vulnerability zdi

More from www.zerodayinitiative.com / ZDI: Published Advisories

Security Engineer II, Engineering

@ Trail of Bits | Worldwide - Remote

Technical Support Engineer - Network Security

@ Ivanti | Bengaluru, India (Bagmane)

Senior Security Analyst- Container Threat and Vulnerability Management

@ Oracle | Philippines

Cybersecurity Strategy & Operations Officer (m/f/d)

@ Nordex Group | Madrid, ES, 28001

Security Administrator

@ ManTech | 201DT - 2251 Corp Park Dr, Herndon, VA

Cybersecurity Specialist

@ GFT Technologies | Sant Cugat del Vallès, B, ES, 08174