IM
IronMonkey Threat Research
‹ Back to ICS Advisories

Rockwell Automation Historian ME

HIGH
CVSS 8.0
Date 2026-09-01T06:00:00+00:00
Source cisa-csaf
Published by CISA

// Description

Successful exploitation of these vulnerabilities could crash the device being accessed; an out-of-bounds write condition may allow remote code execution.

// Vulnerabilities (2)

CVE ID CVSS Score Severity Description
CVE-2025-12768 8.0 high
A security issue exists within FactoryTalk® Historian Machine Edition. An attacker with low-level authentication could exploit this vulnerability to achieveremote code execution on the affected device.
CVE-2026-12661 4.5 medium
A denial-of-service security issue exists within FactoryTalk® Historian Machine Edition. A network adjacent attacker who is authenticated could send craftedrequests to the web interface, resulting in buffer overflow conditions that may cause the device to crash and become unresponsive.

// Remediations (3)

Mitigation: If you have any questions regarding the security issue(s) above and how to mitigate them, contact Te
If you have any questions regarding the security issue(s) above and how to mitigate them, contact TechConnect for help. More information can be found at https://www.rockwellautomation.com/en-us/company/about-us/contact-us.html.
Mitigation: Customers using the affected software, who are not able to upgrade to one of the corrected versions,
Customers using the affected software, who are not able to upgrade to one of the corrected versions, should use Rockwell Automations security best practices found at https://support.rockwellautomation.com/app/answers/answer_view/a_id/1085012/loc/en_US#__highlight.
Mitigation: If you have any questions regarding this disclosure, please contact PSIRT Email: [email protected]
If you have any questions regarding this disclosure, please contact PSIRT Email: [email protected]

// References