CVE-2024-10490

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
02/12/2024
Last modified:
02/12/2024

Description

An “Authentication Bypass Using an Alternate Path or Channel” vulnerability in the OPC UA Server configuration required for B&amp;R mapp Cockpit before 6.0, B&amp;R mapp View before 6.0, B&amp;R mapp Services before 6.0, B&amp;R mapp Motion before 6.0 and B&amp;R mapp Vision before 6.0 may be used by an unauthenticated network-based attacker to cause information disclosure, unintended change of data, or denial of service conditions.<br /> B&amp;R mapp Services is only affected, when mpUserX or mpCodeBox are used in the Automation Studio project.

References to Advisories, Solutions, and Tools