Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Rockwell Automation Fixes Critical Software Vulnerabilities

Rockwell Automation Fixes Critical Software Vulnerabilities

Posted on September 2, 2026 By CWS

Rockwell Automation has announced the release of patches and workarounds addressing over a dozen vulnerabilities found in its industrial automation products. These updates aim to enhance the security of systems widely used in industrial settings.

Critical Vulnerabilities in RSLinx Classic

The latest advisories highlight several critical and high-severity vulnerabilities, particularly within the RSLinx Classic communications software. These denial-of-service (DoS) vulnerabilities pose a significant threat as they can lead to system crashes, necessitating a restart to resume normal operations.

Among these, the advisory for CVE-2026-9637 in ControlLogix and CompactLogix controllers initially listed the flaw as exploited. However, this appears to be a documentation error, as no confirmed exploitations have been reported. A similar stance is maintained by CISA, which also released advisories on the same day.

Additional Security Enhancements

Rockwell has also addressed DoS vulnerabilities in other products, including 1756-ENBT and Logix controllers, by applying necessary patches. In FactoryTalk Historian Machine Edition, a high-severity remote code execution vulnerability has been fixed, enhancing the software’s defense against potential cyber threats.

Furthermore, FactoryTalk Activation Manager received an update to mitigate a high-severity flaw that could allow authenticated users to gain unauthorized access to files and system resources.

Addressing XSS and Privilege Escalation Risks

In addition to software patches, Rockwell Automation has resolved multiple cross-site scripting (XSS) vulnerabilities in ArmorStart Distributed Motor Controllers, which previously could have led to the execution of malicious scripts. A denial-of-service issue affecting the web server component has also been fixed.

The ControlFLASH firmware management utility was updated to prevent arbitrary code execution, which could have allowed attackers to execute commands at the permission level of the logged-in user. A privilege escalation flaw in the Redundancy Module Configuration Tool has been rectified as well.

These updates underscore the ongoing efforts by Rockwell Automation to secure their products against potential cyber threats, ensuring the reliability and safety of industrial operations. As cyber threats continue to evolve, maintaining up-to-date security measures is essential for safeguarding critical infrastructure.

Security Week News Tags:CISA, ControlLogix, Cybersecurity, DoS vulnerabilities, industrial automation, privilege escalation, remote code execution, Rockwell Automation, Software Security, vulnerability patches

Post navigation

Previous Post: Malicious Update Exploits BGP Hijack in Virtualizor
Next Post: AI Assists in Exploit Development for WAGO PLCs

Related Posts

Adobe Patches Nearly 140 Vulnerabilities Adobe Patches Nearly 140 Vulnerabilities Security Week News
FBI Aware of 900 Organizations Hit by Play Ransomware FBI Aware of 900 Organizations Hit by Play Ransomware Security Week News
Ransomware Groups, Chinese APTs Exploit Recent SAP NetWeaver Flaws Ransomware Groups, Chinese APTs Exploit Recent SAP NetWeaver Flaws Security Week News
Amazon: Russian Hackers Now Favor Misconfigurations in Critical Infrastructure Attacks Amazon: Russian Hackers Now Favor Misconfigurations in Critical Infrastructure Attacks Security Week News
Microsoft Addresses 137 Security Vulnerabilities Microsoft Addresses 137 Security Vulnerabilities Security Week News
Trusted Relationships: Emerging Threat in Email Security Trusted Relationships: Emerging Threat in Email Security Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • AI Assists in Exploit Development for WAGO PLCs
  • Rockwell Automation Fixes Critical Software Vulnerabilities
  • Malicious Update Exploits BGP Hijack in Virtualizor
  • Hackers Bypass Microsoft Defender with Fake Installers
  • Urgent Patch Needed for Cleo Harmony Security Flaw

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • AI Assists in Exploit Development for WAGO PLCs
  • Rockwell Automation Fixes Critical Software Vulnerabilities
  • Malicious Update Exploits BGP Hijack in Virtualizor
  • Hackers Bypass Microsoft Defender with Fake Installers
  • Urgent Patch Needed for Cleo Harmony Security Flaw

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark