Skip to main content

Vendor archive

rockwellautomation CVEs

Beta · best-effort

348 CVEs tagged to vendor rockwellautomation76 Critical, 214 High, 52 Medium, 6 Low, 0 Unrated.

CVE-2026-8314

Published Jul 14, 2026

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the siman.exe (Siman) component. The vulnerability stems from improper validation of u…

CVSS 7.0 · High
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort

CVE-2026-8313

Published Jul 14, 2026

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the linker.exe (Siman) component. The vulnerability stems from improper validation of…

CVSS 7.0 · High
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort

CVE-2026-8312

Published Jul 14, 2026

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the expmt.exe (Siman) component. The vulnerability stems from improper validation of u…

CVSS 7.0 · High
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort

CVE-2026-8085

Published Jul 14, 2026

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the model.exe (Siman) component. The vulnerability stems from improper validation of u…

CVSS 7.0 · High
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort

CVE-2025-11918

Published Nov 14, 2025

Rockwell Automation Arena® suffers from a stack-based buffer overflow vulnerability. The specific flaw exists within the parsing of DOE files. Local attackers are able to exploit…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-9068

Published Oct 14, 2025

A security issue exists within the Rockwell Automation Driver Package x64 Microsoft Installer File (MSI) repair functionality, installed with FTLinx. Authenticated attackers with…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-9067

Published Oct 14, 2025

A security issue exists within the x86 Microsoft Installer File (MSI), installed with FTLinx. Authenticated attackers with valid Windows user credentials can initiate a repair and…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-9064

Published Oct 14, 2025

A path traversal security issue exists within FactoryTalk View Machine Edition, allowing unauthenticated attackers on the same network as the device to delete any file within the…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2025-9063

Published Oct 14, 2025

An authentication bypass security issue exists within FactoryTalk View Machine Edition Web Browser ActiveX control. Exploitation of this vulnerability allows unauthorized access…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2025-9161

Published Sep 9, 2025

A security issue exists within FactoryTalk Optix MQTT broker due to the lack of URI sanitization. This flaw enables the loading of remote Mosquito plugins, which can be used to ac…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2025-9065

Published Sep 9, 2025

A server-side request forgery security issue exists within Rockwell Automation ThinManager® software due to the lack of input sanitization. Authenticated attackers can exploit thi…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 348 CVEsPage 1 of 14