← Back

Rockwellautomation

rockwellautomation

341 CVEs • 468 products

Products (468)

Click to collapse
Toggle
Arena
arena
Thinmanager
thinmanager
Rslinx
rslinx
Micrologix
micrologix
1756 Enbt
1756-enbt
1756 Eweb
1756-eweb
1768 Enbt
1768-enbt
1768 Eweb
1768-eweb
Compactlogix
compactlogix
Controllogix
controllogix
Guardlogix
guardlogix
Softlogix
softlogix
Rslogix 500
rslogix_500
Pavilion8
pavilion8
Rslogix 5000
rslogix_5000

CVEs (341)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Rockwellautomation
11783 Natr Firmware
Jun 17, 2026
Oct 14, 2025
9.9 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
Multiple Broken Authentication security issues exist in the affected product. The security issues are due to missing authentication checks on critical functions. These could result in potential denial-of-service, admin a...Show more
Multiple Broken Authentication security issues exist in the affected product. The security issues are due to missing authentication checks on critical functions. These could result in potential denial-of-service, admin account takeover, or NAT rule modifications. Devices would no longer be able to communicate through NATR as a result of denial-of-service or NAT rule modifications. NAT rule modification could also result in device communication to incorrect endpoints. Admin account takeover could allow modification of configuration and require physical access to restore.Show less
1Rockwellautomation
1Factorytalk Analytics Logixai
Jun 17, 2026
Sep 9, 2025
8.7 HIGH· v4
8.8 HIGH· v3
N/A· v2
An open database issue exists in the affected product and version. The security issue stems from an over permissive Redis instance. This could result in an attacker on the intranet accessing sensitive data and potential...Show more
An open database issue exists in the affected product and version. The security issue stems from an over permissive Redis instance. This could result in an attacker on the intranet accessing sensitive data and potential alteration of data.Show less
1Rockwellautomation
1Controllogix 5580 Firmware
Jun 17, 2026
Sep 9, 2025
8.2 HIGH· v4
7.5 HIGH· v3
N/A· v2
A denial-of-service security issue exists in the affected product and version. The security issue stems from the controller repeatedly attempting to forward messages. The issue could result in a major nonrecoverable faul...Show more
A denial-of-service security issue exists in the affected product and version. The security issue stems from the controller repeatedly attempting to forward messages. The issue could result in a major nonrecoverable fault on the controller.Show less
1Rockwellautomation
1Factorytalk Optix
Jun 17, 2026
Sep 9, 2025
7.3 HIGH· v4
8.8 HIGH· v3
N/A· v2
A security issue exists within FactoryTalk Optix MQTT broker due to the lack of URI sanitization. This flaw enables the loading of remote Mosquito plugins, which can be used to achieve remote code execution.
1Rockwellautomation
1Thinmanager
Jun 17, 2026
Sep 9, 2025
8.6 HIGH· v4
8.8 HIGH· v3
N/A· v2
A server-side request forgery security issue exists within Rockwell Automation ThinManager® software due to the lack of input sanitization. Authenticated attackers can exploit this vulnerability by specifying external SM...Show more
A server-side request forgery security issue exists within Rockwell Automation ThinManager® software due to the lack of input sanitization. Authenticated attackers can exploit this vulnerability by specifying external SMB paths, exposing the ThinServer® service account NTLM hash.Show less
1Rockwellautomation
51756 En2tr Series A Firmware
1756 En2tr Series B Firmware1756 En2tr Series C Firmware+2 more
Jun 17, 2026
Sep 9, 2025
7.1 HIGH· v4
6.5 MEDIUM· v3
N/A· v2
A security issue exists in the protected mode of EN4TR devices, where sending specifically crafted messages during a Forward Close operation can cause the device to crash.
1Rockwellautomation
51756 En2tr Series A Firmware
1756 En2tr Series B Firmware1756 En2tr Series C Firmware+2 more
Jun 17, 2026
Sep 9, 2025
7.1 HIGH· v4
6.5 MEDIUM· v3
N/A· v2
A security issue exists in the protected mode of 1756-EN4TR and 1756-EN2TR communication modules, where a Concurrent Forward Close operation can trigger a Major Non-Recoverable (MNFR) fault. This condition may lead to un...Show more
A security issue exists in the protected mode of 1756-EN4TR and 1756-EN2TR communication modules, where a Concurrent Forward Close operation can trigger a Major Non-Recoverable (MNFR) fault. This condition may lead to unexpected system crashes and loss of device availability.Show less
1Rockwellautomation
1Factorytalk Activation Manager
Jun 17, 2026
Sep 9, 2025
8.7 HIGH· v4
7.5 HIGH· v3
N/A· v2
A security issue exists within FactoryTalk Activation Manager. An error in the implementation of cryptography within the software could allow attackers to decrypt traffic. This could result in data exposure, session hij...Show more
A security issue exists within FactoryTalk Activation Manager. An error in the implementation of cryptography within the software could allow attackers to decrypt traffic. This could result in data exposure, session hijacking, or full communication compromise.Show less
1Rockwellautomation
1Factorytalk Linx
Jun 17, 2026
Aug 14, 2025
8.4 HIGH· v4
9.1 CRITICAL· v3
N/A· v2
A security issue exists within the FactoryTalk Linx Network Browser. By modifying the process.env.NODE_ENV to ‘development’, the attacker can disable FTSP token validation. This bypass allows access to create, update, an...Show more
A security issue exists within the FactoryTalk Linx Network Browser. By modifying the process.env.NODE_ENV to ‘development’, the attacker can disable FTSP token validation. This bypass allows access to create, update, and delete FTLinx drivers.Show less
1Rockwellautomation
1Arena
Jun 17, 2026
Aug 5, 2025
8.4 HIGH· v4
7.8 HIGH· v3
N/A· v2
A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force Arena Simulation to read and write past the end of memory space. Successful use requires user action, such as opening a ba...Show more
A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force Arena Simulation to read and write past the end of memory space. Successful use requires user action, such as opening a bad file or webpage. If used, a threat actor could execute code or disclose information.Show less
1Rockwellautomation
1Arena
Jun 17, 2026
Aug 5, 2025
8.4 HIGH· v4
7.8 HIGH· v3
N/A· v2
A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force Arena Simulation to read and write past the end of memory space. Successful use requires user action, such as opening a ba...Show more
A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force Arena Simulation to read and write past the end of memory space. Successful use requires user action, such as opening a bad file or webpage. If used, a threat actor could execute code or disclose information.Show less
1Rockwellautomation
1Arena
Jun 17, 2026
Aug 5, 2025
8.4 HIGH· v4
7.8 HIGH· v3
N/A· v2
A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force Arena Simulation to read and write past the end of memory space. Successful use requires user action, such as opening a ba...Show more
A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force Arena Simulation to read and write past the end of memory space. Successful use requires user action, such as opening a bad file or webpage. If used, a threat actor could execute code or disclose information.Show less
1Rockwellautomation
1Arena
Jun 17, 2026
Jul 9, 2025
7.1 HIGH· v4
7.8 HIGH· v3
N/A· v2
A remote code execution security issue exists in the Rockwell Automation Arena®.  A crafted DOE file can force Arena Simulation to write beyond the boundaries of an allocated object. Exploitation requires user interactio...Show more
A remote code execution security issue exists in the Rockwell Automation Arena®.  A crafted DOE file can force Arena Simulation to write beyond the boundaries of an allocated object. Exploitation requires user interaction, such as opening a malicious file within the software. If exploited, a threat actor could execute arbitrary code on the target system. The software must run under the context of the administrator in order to cause worse case impact. This is reflected in the Rockwell CVSS score, as AT:P.Show less
1Rockwellautomation
1Arena
Jun 17, 2026
Jul 9, 2025
7.1 HIGH· v4
7.8 HIGH· v3
N/A· v2
A remote code execution security issue exists in the Rockwell Automation Arena®.  A crafted DOE file can force Arena Simulation to write beyond the boundaries of an allocated object. Exploitation requires user interactio...Show more
A remote code execution security issue exists in the Rockwell Automation Arena®.  A crafted DOE file can force Arena Simulation to write beyond the boundaries of an allocated object. Exploitation requires user interaction, such as opening a malicious file within the software. If exploited, a threat actor could execute arbitrary code on the target system. The software must run under the context of the administrator in order to cause worse case impact. This is reflected in the Rockwell CVSS score, as AT:P.Show less
1Rockwellautomation
1Thinmanager
Jun 17, 2026
Apr 15, 2025
8.5 HIGH· v4
5.5 MEDIUM· v3
N/A· v2
A denial-of-service vulnerability exists in the Rockwell Automation ThinManager. The software fails to adequately verify the outcome of memory allocation while processing Type 18 messages. If exploited, a threat actor co...Show more
A denial-of-service vulnerability exists in the Rockwell Automation ThinManager. The software fails to adequately verify the outcome of memory allocation while processing Type 18 messages. If exploited, a threat actor could cause a denial-of-service on the target software.Show less
1Rockwellautomation
1Thinmanager
Jun 17, 2026
Apr 15, 2025
8.5 HIGH· v4
7.8 HIGH· v3
N/A· v2
A privilege escalation vulnerability exists in the Rockwell Automation ThinManager. When the software starts up, files are deleted in the temporary folder causing the Access Control Entry of the directory to inherit perm...Show more
A privilege escalation vulnerability exists in the Rockwell Automation ThinManager. When the software starts up, files are deleted in the temporary folder causing the Access Control Entry of the directory to inherit permissions from the parent directory. If exploited, a threat actor could inherit elevated privileges.Show less
1Rockwellautomation
1Arena
Jun 17, 2026
Apr 8, 2025
8.5 HIGH· v4
7.8 HIGH· v3
N/A· v2
A local code execution vulnerability exists in the Rockwell Automation Arena® due to a stack-based memory buffer overflow. The flaw is result of improper validation of user-supplied data. If exploited a threat actor can...Show more
A local code execution vulnerability exists in the Rockwell Automation Arena® due to a stack-based memory buffer overflow. The flaw is result of improper validation of user-supplied data. If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.Show less
1Rockwellautomation
1Arena
Jun 17, 2026
Apr 8, 2025
8.5 HIGH· v4
7.8 HIGH· v3
N/A· v2
A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to read outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied...Show more
A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to read outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data.  If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.Show less
1Rockwellautomation
1Arena
Jun 17, 2026
Apr 8, 2025
8.5 HIGH· v4
7.8 HIGH· v3
N/A· v2
A local code execution vulnerability exists in the Rockwell Automation Arena® due to a stack-based memory buffer overflow. The flaw is result of improper validation of user-supplied data. If exploited a threat actor can...Show more
A local code execution vulnerability exists in the Rockwell Automation Arena® due to a stack-based memory buffer overflow. The flaw is result of improper validation of user-supplied data. If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.Show less
1Rockwellautomation
1Arena
Jun 17, 2026
Apr 8, 2025
8.5 HIGH· v4
7.8 HIGH· v3
N/A· v2
A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to read outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied...Show more
A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to read outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data.  If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.Show less