Signal

Multiple severe vulnerabilities disclosed in Rockwell Automation and Moxa industrial devices

Evidence first: scan the strongest sources, then decide whether to go deeper.

Published 2026-06-17 02:00 UTCUpdated 2026-06-17 02:00 UTC
rss
cvevulnerabilityexploitsecurity_advisoryindustrial_control_systemsincident_response
Trend in the last 24h
Source links open
Source links and full evidence are open here. Archive history, compare-over-time, alerts, exports, API, integrations, and workflow are paid.
No card needed for the free brief.
Evidence trail (top sources)
top sources (2 domains)domains are deduped. counts indicate coverage, not truth.
2 top sources shown
Vulnerability in Rockwell Automation FactoryTalk Analytics PavilionX
NCSC-FI - Vulnerabilities · Advisory · cisa.gov · 2026-06-17 02:00 UTC
Vulnerabilities in Moxas Serial Device Servers
NCSC-FI - Vulnerabilities · News · moxa.com · 2026-06-17 02:00 UTC
limited source diversity in top sources
Overview

Several severe security vulnerabilities have been identified and officially fixed in Rockwell Automation products including Logix 5370 & 5570 controllers, CompactLogix controllers, RSLinx software, FLEX I/O EtherNet/IP adapters, and FactoryTalk Analytics PavilionX.

Entities
Rockwell AutomationMoxa
Score total
1.26
Momentum 24h
6
Posts
6
Origins
2
Source types
1
Duplicate ratio
0%
Why now
  • Official fixes have just been released for these severe vulnerabilities.
  • The disclosed CVEs have high CVSS scores indicating significant risk.
  • Industrial environments remain attractive targets for attackers exploiting such flaws.
Why it matters
  • Industrial control system vulnerabilities can cause operational disruptions and safety risks.
  • Exploits targeting these flaws may lead to denial-of-service or unauthorized control of critical infrastructure.
  • Prompt patching is essential to maintain industrial network security and prevent potential attacks.
LLM analysis
Topic mix: lowPromo risk: lowSource quality: high
Recurring claims
  • Severe denial-of-service vulnerabilities exist in Rockwell Automation Logix 5370 & 5570 controllers triggered by crafted CIP messages.
  • Rockwell Automation CompactLogix controllers have vulnerabilities allowing denial-of-service and information disclosure via exposed CIP Connection IDs.
  • Rockwell Automation RSLinx software is vulnerable to a stack-based buffer overflow enabling remote code execution.
  • Rockwell Automation FLEX I/O EtherNet/IP adapters suffer from denial-of-service and improper authentication vulnerabilities allowing unauthorized password changes.
How sources frame it
  • NCSC-FI And Moxa Security Advisories: neutral
Consolidated multiple ICS vulnerability advisories into a single briefing emphasizing the criticality and patch availability.
All evidence
All evidence
Vulnerability in Rockwell Automation FactoryTalk Analytics PavilionX
NCSC-FI - Vulnerabilities · cisa.gov · 2026-06-17 02:00 UTC
Vulnerabilities in Moxas Serial Device Servers
NCSC-FI - Vulnerabilities · moxa.com · 2026-06-17 02:00 UTC
Show filters & breakdown
Posts loaded: 0Publishers: 1Origin domains: 2Duplicates: -
Showing 2 / 0
Top publishers (this list)
  • NCSC-FI - Vulnerabilities (2)
Top origin domains (this list)
  • cisa.gov (1)
  • moxa.com (1)