← Vulnerability feed

Vulnerability record · CVE-2021-32960 · published 1 April 2022

CVE-2021-32960: Rockwellautomation factorytalk services platform incorrect authorization vulnerability

Rockwellautomation · Factorytalk Services Platform

Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is enabled and deployed contains a vulnerability that may allow a remote, authenticated attacker to bypass FactoryTalk Security policies based on the computer name. If successfully exploited, this may allow an attacker to have the same privileges as if they were logged on to the client machine.

8.8 CVSS 3.1 High EPSS 2.4% · top 16.4% CWE-863 · Incorrect authorizationCWE-693 · CWE-693
8.8CVSS 3.1 base score, v2 6.0
2.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is enabled and deployed contains a vulnerability that may allow a remote, authenticated attacker to bypass FactoryTalk Security policies based on the computer name. If successfully exploited, this may allow an attacker to have the same privileges as if they were logged on to the client machine.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://rockwellautomation.custhelp.com/app/answers/answer_view/a_id/1131785 Permissions RequiredVendor Advisory
https://www.cisa.gov/uscert/ics/advisories/icsa-21-161-01 MitigationThird Party AdvisoryUS Government Resource
https://rockwellautomation.custhelp.com/app/answers/answer_view/a_id/1131785 Permissions RequiredVendor Advisory
https://www.cisa.gov/uscert/ics/advisories/icsa-21-161-01 MitigationThird Party AdvisoryUS Government Resource

Track CVE-2021-32960 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2021-22681Rockwell Logix Designer authentication bypass via weak key verificationRockwell Automation Studio 5000 Logix Designer (v21+) and RSLogix 5000 (v16-20) rely on a key to verify that Logix controllers are talking to genuine…KEVEPSS 64%analysed10.0CVE-2020-14516Rockwellautomation factorytalk services platform vulnerabilityIn Rockwell Automation FactoryTalk Services Platform Versions 6.10.00 and 6.11.00, there is an issue with the implementation of the SHA-256 hashing a…EPSS 4.1%9.8CVE-2020-6967Rockwellautomation factorytalk services platform deserialization of untrusted data vulnerabilityIn Rockwell Automation all versions of FactoryTalk Diagnostics software, a subsystem of the FactoryTalk Services Platform, FactoryTalk Diagnostics ex…EPSS 5.5%9.1CVE-2024-21917Rockwellautomation factorytalk services platform improper verification of cryptographic signature vulnerabilityA vulnerability exists in Rockwell Automation FactoryTalk® Service Platform that allows a malicious user to obtain the service token and use it for a…EPSS 0.86%8.8CVE-2024-21915Rockwellautomation factorytalk services platform incorrect permission assignment vulnerabilityA privilege escalation vulnerability exists in Rockwell Automation FactoryTalk® Service Platform (FTSP). If exploited, a malicious user with basic us…EPSS 0.99%8.8CVE-2020-12033Rockwellautomation factorytalk services platform improper input validation vulnerabilityIn Rockwell Automation FactoryTalk Services Platform, all versions, the redundancy host service (RdcyHost.exe) does not validate supplied identifiers…EPSS 1.1%8.1CVE-2023-46290Rockwellautomation factorytalk services platform improper authentication vulnerabilityDue to inadequate code logic, a previously unauthenticated threat actor could potentially obtain a local Windows OS user token through the FactoryTal…EPSS 2.7%7.8CVE-2012-4713Rockwellautomation factorytalk services platform vulnerabilityInteger signedness error in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-S…EPSS 3.2%

Source: NIST National Vulnerability Database (record CVE-2021-32960), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.