Rockwell Automation patches multiple ICS flaws
ID: fb5dd812-bac7-5166-8a12-0a1ffa2d5578
STIX ID: report--fb5dd812-bac7-5166-8a12-0a1ffa2d5578
Feed Name: securityonline.info
Rockwell Automation published advisories SD1773 and SD1775 disclosing multiple vulnerabilities in FactoryTalk Historian SE and FLEX I/O 1794-AENT/1794-AENTRXT adapters — notably CVE-2025-13036 (authentication bypass, CVSS 9.2) and CVE-2026-0647 (unauthenticated password change, CVSS 9.4). Rockwell released fixes (Historian 12.00.00, FLEX I/O firmware 2.013); CISA republished the advisories and defenders are advised to patch urgently, restrict network access to affected services, and monitor for unexpected restarts or account lockouts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
