Rockwellautomation
rockwellautomation
344 CVEs • 468 products
Products (468)
Click to collapseToggle
Products (468)
Click to collapse
CVEs (344)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Rockwellautomation 1Studio 5000 Logix Designer Aug 25, 2026 Jul 14, 2026 7.3 HIGH· v4 7.5 HIGH· v3 N/A· v2 A code execution security issue exists within Studio 5000 Logix Designer® due to an unquoted search path in the External Tools configuration. The executable paths specified in the external tools configuration file are no...Show more |
1Rockwellautomation 1Studio 5000 Logix Designer Aug 25, 2026 Jul 14, 2026 7.3 HIGH· v4 7.5 HIGH· v3 N/A· v2 A remote code execution security issue exists within Studio 5000 Logix Designer® due to incorrect authorization on a configuration file. This can allow any authenticated user to modify the paths of external tools configu...Show more |
1Rockwellautomation 1Studio 5000 Logix Designer Aug 25, 2026 Jul 14, 2026 5.4 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 A path traversal security issue exists within Studio 5000 Logix Designer® due to improper limitation of file paths within ACD project files. The software does not sanitize or validate file names embedded in the ACD file...Show more |
A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the siman.exe (Siman) component. The vulnerability stems from improper validation of user-supplied data, which can result in an...Show more |
A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the linker.exe (Siman) component. The vulnerability stems from improper validation of user-supplied data, which can result in a...Show more |
A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the expmt.exe (Siman) component. The vulnerability stems from improper validation of user-supplied data, which can result in an...Show more |
A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the model.exe (Siman) component. The vulnerability stems from improper validation of user-supplied data, which can result in an...Show more |
1Rockwellautomation 1Armorstart Lt Firmware Jun 17, 2026 Jan 20, 2026 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles EtherNet/IP and CIP grammar tests, the device reboots unexpectedly, causing the Link State...Show more |
1Rockwellautomation 1Armorstart Lt Firmware Jun 17, 2026 Jan 20, 2026 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles Comprehensive grammar tests, the device reboots unexpectedly, causing the Link State Monito...Show more |
1Rockwellautomation 1Armorstart Lt Firmware Jun 17, 2026 Jan 20, 2026 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. This vulnerability is triggered during fuzzing of multiple CIP classes, which causes the CIP port to become unresponsive. |
1Rockwellautomation 1Armorstart Lt Firmware Jun 17, 2026 Jan 20, 2026 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles EtherNet/IP Step Limits Storms tests, the device reboots unexpectedly, causing the Link Sta...Show more |
1Rockwellautomation 1Armorstart Lt Firmware Jun 17, 2026 Jan 20, 2026 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles Comprehensive limited storm tests, the device reboots unexpectedly, causing the Link State...Show more |
1Rockwellautomation 1Armorstart Lt Firmware Jun 17, 2026 Jan 20, 2026 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles Comprehensive step limit storm tests, the device reboots |
1Rockwellautomation 1Armorstart Lt Firmware Jun 17, 2026 Jan 20, 2026 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. Fuzzing performed using Defensics causes the device to become unresponsive, requiring a reboot. |
1Rockwellautomation 1Armorstart Lt Firmware Jun 17, 2026 Jan 20, 2026 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles EtherNet/IP Step Limit Storm tests, the device reboots unexpectedly, causing the Link State...Show more |
1Rockwellautomation 1Armorstart Lt Firmware Jun 17, 2026 Jan 20, 2026 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. After running a Burp Suite active scan, the device loses ICMP connectivity, causing the web application to become inaccessib...Show more |
Rockwell Automation Arena® suffers from a stack-based buffer overflow vulnerability. The specific flaw exists within the parsing of DOE files. Local attackers are able to exploit this issue to potentially execute arbitra...Show more |
1Rockwellautomation 1Factorytalk Linx Jun 17, 2026 Oct 14, 2025 8.5 HIGH· v4 7.8 HIGH· v3 N/A· v2 A security issue exists within the Rockwell Automation Driver Package x64 Microsoft Installer File (MSI) repair functionality, installed with FTLinx. Authenticated attackers with valid Windows Users credentials can initi...Show more |
1Rockwellautomation 1Factorytalk Linx Jun 17, 2026 Oct 14, 2025 8.5 HIGH· v4 7.8 HIGH· v3 N/A· v2 A security issue exists within the x86 Microsoft Installer File (MSI), installed with FTLinx. Authenticated attackers with valid Windows user credentials can initiate a repair and hijack the resulting console window. Thi...Show more |
1Rockwellautomation 1Factorytalk View Jun 17, 2026 Oct 14, 2025 8.7 HIGH· v4 9.1 CRITICAL· v3 N/A· v2 A path traversal security issue exists within FactoryTalk View Machine Edition, allowing unauthenticated attackers on the same network as the device to delete any file within the panels operating system. Exploitation of...Show more |