Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Rockwell Automation Fixes Critical Software Vulnerabilities

Rockwell Automation Fixes Critical Software Vulnerabilities

Posted on September 2, 2026 By CWS

Rockwell Automation has announced the release of patches and workarounds addressing over a dozen vulnerabilities found in its industrial automation products. These updates aim to enhance the security of systems widely used in industrial settings.

Critical Vulnerabilities in RSLinx Classic

The latest advisories highlight several critical and high-severity vulnerabilities, particularly within the RSLinx Classic communications software. These denial-of-service (DoS) vulnerabilities pose a significant threat as they can lead to system crashes, necessitating a restart to resume normal operations.

Among these, the advisory for CVE-2026-9637 in ControlLogix and CompactLogix controllers initially listed the flaw as exploited. However, this appears to be a documentation error, as no confirmed exploitations have been reported. A similar stance is maintained by CISA, which also released advisories on the same day.

Additional Security Enhancements

Rockwell has also addressed DoS vulnerabilities in other products, including 1756-ENBT and Logix controllers, by applying necessary patches. In FactoryTalk Historian Machine Edition, a high-severity remote code execution vulnerability has been fixed, enhancing the software’s defense against potential cyber threats.

Furthermore, FactoryTalk Activation Manager received an update to mitigate a high-severity flaw that could allow authenticated users to gain unauthorized access to files and system resources.

Addressing XSS and Privilege Escalation Risks

In addition to software patches, Rockwell Automation has resolved multiple cross-site scripting (XSS) vulnerabilities in ArmorStart Distributed Motor Controllers, which previously could have led to the execution of malicious scripts. A denial-of-service issue affecting the web server component has also been fixed.

The ControlFLASH firmware management utility was updated to prevent arbitrary code execution, which could have allowed attackers to execute commands at the permission level of the logged-in user. A privilege escalation flaw in the Redundancy Module Configuration Tool has been rectified as well.

These updates underscore the ongoing efforts by Rockwell Automation to secure their products against potential cyber threats, ensuring the reliability and safety of industrial operations. As cyber threats continue to evolve, maintaining up-to-date security measures is essential for safeguarding critical infrastructure.

Security Week News Tags:CISA, ControlLogix, Cybersecurity, DoS vulnerabilities, industrial automation, privilege escalation, remote code execution, Rockwell Automation, Software Security, vulnerability patches

Post navigation

Previous Post: Malicious Update Exploits BGP Hijack in Virtualizor
Next Post: AI Assists in Exploit Development for WAGO PLCs

Related Posts

Coca-Cola Halts Fairlife Production Following Cyber Attack Coca-Cola Halts Fairlife Production Following Cyber Attack Security Week News
New Interlock RAT Variant Distributed via FileFix Attacks New Interlock RAT Variant Distributed via FileFix Attacks Security Week News
Global Operation Halts Major Cryptocurrency Theft Schemes Global Operation Halts Major Cryptocurrency Theft Schemes Security Week News
Critical Drupal Vulnerability Patch Scheduled for Release Critical Drupal Vulnerability Patch Scheduled for Release Security Week News
Google Pays 0,000 in Rewards for Two Chrome Vulnerabilities Google Pays $100,000 in Rewards for Two Chrome Vulnerabilities Security Week News
AWS Enhances Security Hub with Cross-Domain Integration AWS Enhances Security Hub with Cross-Domain Integration Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Urgent Patch for Major Check Point Vulnerability Released
  • Google Fixes Pixel Zero-Day Vulnerability Amid Attacks
  • Russian Enterprises Face Threats from Cyber Groups
  • TP-Link Camera Vulnerabilities Threaten User Privacy
  • AI-Driven Data Breach Notified to Spanish Authorities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Urgent Patch for Major Check Point Vulnerability Released
  • Google Fixes Pixel Zero-Day Vulnerability Amid Attacks
  • Russian Enterprises Face Threats from Cyber Groups
  • TP-Link Camera Vulnerabilities Threaten User Privacy
  • AI-Driven Data Breach Notified to Spanish Authorities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark