Rockwellautomation
rockwellautomation
341 CVEs • 468 products
Products (468)
Click to collapseToggle
Products (468)
Click to collapse
CVEs (341)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Rockwellautomation 2Armorstart St 281e Firmware Armorstart St 284ee FirmwareJun 17, 2026 May 11, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially allow a malicious user with admin privileges and network access to view user data and modify th...Show more |
1Rockwellautomation 2Armorstart St 281e Firmware Armorstart St 284ee FirmwareJun 17, 2026 May 11, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially allow a malicious user with admin privileges and network access to view user data and modify th...Show more |
1Rockwellautomation 2Armorstart St 281e Firmware Armorstart St 284ee FirmwareJun 17, 2026 May 11, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially allow a malicious user with admin privileges and network access to view user data and modify th...Show more |
1Rockwellautomation 2Armorstart St 281e Firmware Armorstart St 284ee FirmwareJun 17, 2026 May 11, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially allow a malicious user with admin privileges and network access to view user data and modify th...Show more |
1Rockwellautomation 2Armorstart St 281e Firmware Armorstart St 284ee FirmwareJun 17, 2026 May 11, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product A cross site scripting vulnerability was discovered that could potentially allow a malicious user to view and modify s...Show more |
1Rockwellautomation 2Armorstart St 281e Firmware Armorstart St 284ee FirmwareJun 17, 2026 May 11, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially allow a malicious user to view and modify sensitive data or make the web page unavailable. User i...Show more |
1Rockwellautomation 2Armorstart St 281e Firmware Armorstart St 284ee FirmwareJun 17, 2026 May 11, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially allow a malicious user with admin privileges and network access to view user data and modify th...Show more |
An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by u...Show more |
An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by u...Show more |
An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by u...Show more |
4Ge PtcRockwellautomation+1 more8Industrial Gateway Server Kepserver EnterpriseKepware Kepserverex+5 moreJun 17, 2026 Mar 29, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0. Authentication is not required to exploit this vulnerability. The specific flaw exists wit...Show more |
4Ge PtcRockwellautomation+1 more8Industrial Gateway Server Kepserver EnterpriseKepware Kepserverex+5 moreJun 17, 2026 Mar 29, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0. Authentication is not required to exploit this vulnerability. The specific flaw exists wit...Show more |
In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is present in the message field in Rockwell Automation's ThinManager ThinServer. An unauthentica...Show more |
In affected versions, path traversal exists when processing a message of type 8 in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can exploit this vulnerability to download arbitr...Show more |
In affected versions, a path traversal exists when processing a message in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker could potentially exploit this vulnerability to upload arbitrar...Show more |
1Rockwellautomation 1Modbus Tcp Server Add On Instructions Jun 17, 2026 Mar 17, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Rockwell Automation Modbus TCP Server AOI prior to 2.04.00 is vulnerable to an unauthorized user sending a malformed message that could cause the controller to respond with a copy of the most recent response to the last...Show more |
3Ge PtcRockwellautomation9Digital Industrial Gateway Server Kepserver EnterpriseKepware Server+6 moreJun 17, 2026 Feb 23, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2
The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash the server and remotely execute arbitrary code.
|
3Ge PtcRockwellautomation9Digital Industrial Gateway Server Kepserver EnterpriseKepware Server+6 moreJun 17, 2026 Feb 23, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2
The affected products are vulnerable to an integer
overflow or wraparound, which could allow an attacker to crash the server and remotely
execute arbitrary code.
|
1Rockwellautomation 1Studio 5000 Logix Emulate Jun 17, 2026 Dec 27, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A remote code execution vulnerability exists in Rockwell Automation Studio 5000 Logix Emulate software. Users are granted elevated permissions on certain product services when the software is installed. Due to this mis...Show more |
1Rockwellautomation 5Compact Guardlogix 5380 Firmware Compactlogix 5380 FirmwareCompactlogix 5480 Firmware+2 moreJun 17, 2026 Dec 19, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 An unauthorized user could use a specially crafted sequence of Ethernet/IP messages, combined with heavy traffic loading to cause a denial-of-service condition in Rockwell Automation Logix controllers resulting in a maj...Show more |