漏洞描述 Fatek Automation PM Designer是永宏(Fatek Automation)公司的一款可编程逻辑控制器。 Fatek Automation PM Designer中存在远程代码执行漏洞。攻击者可利用该漏洞在受影响应用程序上下文中执行任意代码,也可能造成拒绝服务。
相关漏洞推荐 WordPress WooCommerce Designer Pro 插件 /wp-admin/admin-ajax.php wcdp_save_canvas_design_ajax 文件上传漏洞(CVE-2025-6440) POC CVE-2021-24370: WordPress Fancy Product Designer <4.6.9 - Arbitrary File Upload POC CVE-2021-41291: ECOA Building Automation System - Directory Traversal Content Disclosure POC CVE-2021-41293: ECOA Building Automation System - Arbitrary File Retrieval POC CVE-2022-0218: HTML Email Template Designer < 3.1 - Stored Cross-Site Scripting POC CVE-2022-22972: VMware Workspace ONE Access/Identity Manager/vRealize Automation - Authentication Bypass POC CVE-2022-26833: Open Automation Software OAS Platform V16.00.0121 - Missing Authentication POC CVE-2024-6922: Automation Anywhere Automation 360 - Server-Side Request Forgery POC CVE-2024-9186: Automation By Autonami < 3.3.0 - SQL Injection POC CVE-2025-1562: Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit - Broken Access Control POC CVE-2025-3102: SureTriggers – All-in-One Automation Platform ≤ 1.0.78 - Authentication Bypass POC CVE-2020-21998: HomeAutomation 3.3.2 - Open Redirect POC tcpconfig: Rockwell Automation TCP/IP Configuration Information - Detect