IM
IronMonkey Threat Research
‹ Back to ICS Advisories

Rockwell Automation ArmorStart LT

HIGH
CVSS 7.5
Date 2026-09-03T06:00:00+00:00
Source cisa-csaf
Published by CISA

// Description

Successful exploitation of these vulnerabilities could result in a loss of webserver availability or allow an attacker to inject malicious scripts that will be executed when other users access the affected page.

// Vulnerabilities (2)

CVE ID CVSS Score Severity Description
CVE-2026-19471 7.3 high
Multiple stored cross-site scripting security issues exist within ArmorStart LT. Stored XSS occurs when user input is not properly sanitized and is stored on the server, allowing an attacker to inject malicious scripts that will be executed when other users access the affected page.
CVE-2026-19472 7.5 high
A denial-of-service security issue exists within ArmorStart LT. The security issue stems from improper handling of a crafted HTTP PUT request sent to the embedded web server. This can result in a loss of web server availability.

// Remediations (3)

Mitigation: Users of the affected software who are not able to upgrade to one of the corrected versions should f
Users of the affected software who are not able to upgrade to one of the corrected versions should follow Rockwell Automation's security best practices.
Mitigation: Rockwell Automation has corrected this issue in firmware version v2.002, and encourages all users to
Rockwell Automation has corrected this issue in firmware version v2.002, and encourages all users to update to the newest version.
Mitigation: For more information on this issue, see the Rockwell Automation security advisory at: https://www.ro
For more information on this issue, see the Rockwell Automation security advisory at: https://www.rockwellautomation.com/en-us/trust-center/security-advisories.html

// References