rockwellautomation

338 tracked vulnerabilities.

CVE-2025-9466 HIGH
ArmorStart LT Firmware < 2.002 - Denial of Service via Achilles EtherNet/IP and CIP Grammar Tests
Jan 20, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-9465 HIGH
ArmorStart LT Firmware < 2.002 - Denial of Service via Achilles Grammar Test Execution
Jan 20, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-9464 HIGH
ArmorStart LT Firmware < 2.002 - Denial of Service via CIP Class Fuzzing
Jan 20, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-9283 HIGH
ArmorStart LT Firmware < 2.002 - Denial of Service via EtherNet/IP Step Limits Storms
Jan 20, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-9282 HIGH
ArmorStart LT Firmware < 2.002 - Denial of Service via Achilles Comprehensive Storm Test
Jan 20, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-9281 HIGH
ArmorStart LT Firmware < 2.002 - Denial of Service via Achilles Comprehensive Step Limit Storm Tests
Jan 20, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-9280 HIGH
ArmorStart LT Firmware < 2.002 - Denial of Service via Defensics Fuzzing
Jan 20, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-9279 HIGH
ArmorStart LT Firmware < 2.002 - Denial of Service via EtherNet/IP Step Limit Storm
Jan 20, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-9278 HIGH
ArmorStart LT Firmware < 2.002 - Denial of Service via Burp Suite Active Scan
Jan 20, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-11918 HIGH
Rockwell Automation Arena < 16.20.11 - Stack-based Buffer Overflow in DOE File Parser
Nov 14, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-9068 HIGH
Rockwell Automation Driver Package x64 MSI - Privilege Escalation
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-9067 HIGH
FactoryTalk Linx < 6.50 - Authenticated Privilege Escalation via MSI Repair Console Hijack
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-9064 CRITICAL
FactoryTalk View Machine Edition - Path Traversal
Oct 14, 2025
CVSS 9.1
EPSS 0.00
CVE-2025-9063 CRITICAL
FactoryTalk View Machine Edition - Auth Bypass
Oct 14, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-7330 MEDIUM
Rockwell Automation 1783-NATR Firmware < 1.007 - Cross-Site Request Forgery
Oct 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-7329 MEDIUM
Rockwell Automation 1783-NATR Firmware < 1.007 - Authenticated Stored Cross-Site Scripting in Configuration Fields
Oct 14, 2025
CVSS 4.8
EPSS 0.00
CVE-2025-7328 CRITICAL
Rockwell Automation 1783-NATR Firmware < 1.007 - Unauthenticated Denial of Service and Admin Account Takeover
Oct 14, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-9364 HIGH
FactoryTalk Analytics LogixAI - Exposure of Sensitive System Information via Over-Permissive Redis Instance
Sep 09, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-9166 HIGH
Rockwell Automation ControlLogix 5580 Firmware - Denial of Service via Repeated Message Forwarding
Sep 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-9161 HIGH
FactoryTalk Optix 1.5.0-1.5.9 - Remote Code Execution via MQTT Broker URI
Sep 09, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-9065 HIGH
Rockwell Automation ThinManager - SSRF
Sep 09, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-8008 MEDIUM
Rockwell Automation 1756-EN2TR/EN4TR/EN4TRXT Series < 7.001 - Denial of Service via Crafted Forward Close Messages
Sep 09, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-8007 MEDIUM
Rockwell Automation 1756-EN2TR/EN4TR <7.001 DoS via Concurrent Forward Close
Sep 09, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-7970 HIGH
FactoryTalk Activation Manager 5.00.00-5.01.01 - Missing Authentication for Critical Function
Sep 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-7972 CRITICAL
FactoryTalk Linx Network Browser - Auth Bypass
Aug 14, 2025
CVSS 9.1
EPSS 0.00