CVE-2023-39474 | Ignition Inductive Automation downloadLaunchClientJar code download (ZDI-23-1049)
A vulnerability classified as critical has been found in Ignition Inductive Automation. Affected is the function downloadLaunchClientJar. The manipulation leads to download of code without integrity check.
This vulnerability is traded as CVE-2023-39474. Access to the local network is required for this attack to succeed. There is no exploit available.