8.7

CVSS4.0

CVE-2025-14027 - Rockwell Automation Recommends Upgrading From 1756-RM2 XT To 1756-RM3 XT

Multiple denial-of-service vulnerabilities exist in the affected product. These issues can be triggered through various crafted inputs, including malformed Class 3 messages, memory leak conditions, and other resource exhaustion scenarios. Exploitation may cause the device to become unresponsive and…

📅 Published: Jan. 20, 2026, 1:56 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-9279 - ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities

A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles EtherNet/IP Step Limit Storm tests, the device reboots unexpectedly, causing the Link State Monitor to go down for several seconds.

📅 Published: Jan. 20, 2026, 1:56 p.m. 🔄 Last Modified: Feb. 2, 2026, 6:09 p.m.

8.7

CVSS4.0

CVE-2025-9278 - ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities

A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. After running a Burp Suite active scan, the device loses ICMP connectivity, causing the web application to become inaccessible.

📅 Published: Jan. 20, 2026, 1:55 p.m. 🔄 Last Modified: Feb. 2, 2026, 6:09 p.m.

8.7

CVSS4.0

CVE-2025-9466 - ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities

A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles EtherNet/IP and CIP grammar tests, the device reboots unexpectedly, causing the Link State Monitor to go down for several seconds.

📅 Published: Jan. 20, 2026, 1:54 p.m. 🔄 Last Modified: Feb. 2, 2026, 6:08 p.m.

7.1

CVSS4.0

CVE-2025-11743 - Rockwell Automation CompactLogix® 5370 Denial of Service Vulnerability

A denial-of-service security issue in the affected product. The security issue occurs when a malformed CIP forward open message is sent. This could result in a major nonrecoverable fault a restart is required to recover.

📅 Published: Jan. 20, 2026, 1:52 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-9465 - ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities

A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles Comprehensive grammar tests, the device reboots unexpectedly, causing the Link State Monitor to go down for several seconds.

📅 Published: Jan. 20, 2026, 1:51 p.m. 🔄 Last Modified: Feb. 2, 2026, 6:08 p.m.

8.7

CVSS4.0

CVE-2025-9464 - Rockwell Automation ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities

A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. This vulnerability is triggered during fuzzing of multiple CIP classes, which causes the CIP port to become unresponsive.

📅 Published: Jan. 20, 2026, 1:49 p.m. 🔄 Last Modified: Feb. 2, 2026, 6:08 p.m.

7.5

CVSS3.1

CVE-2025-15281 - wordexp with WRDE_REUSE and WRDE_APPEND may return uninitialized memory

Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0 to version 2.42 may cause the interface to return uninitialized memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.

📅 Published: Jan. 20, 2026, 1:22 p.m. 🔄 Last Modified: Feb. 5, 2026, 5:43 p.m.

8.8

CVSS4.0

CVE-2025-14377 - Verve Asset Manager – Plaintext Storage Vulnerabilities

A security issue was discovered within the legacy Ansible playbook component of Verve Asset Manager, caused by plaintext secrets incorrectly stored when a playbook is running. This component has been retired and has been optional since the 1.36 release in 2024.

📅 Published: Jan. 20, 2026, 1:21 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.6

CVSS4.0

CVE-2025-14376 - Verve Asset Manager – Plaintext Storage Vulnerabilities

A security issue was discovered within the legacy ADI server component of Verve Asset Manager, caused by plaintext secrets stored in environment variables on the ADI server. This component has been retired and has been optional since the 1.36 release in 2024.

📅 Published: Jan. 20, 2026, 1:18 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 2062 of 34,919
« previous page » next page
Filters