ICSA-12-088-01A
·
Published 2025-06-06
·
View on CISA ICS-CERT ↗
Rockwell Automation FactoryTalk RNADiagReceiver
CVSS 5.0
MEDIUM
CVEs (1)
Remediations
- Rockwell has developed a security update to address these vulnerabilities. To download and install the update please refer to Rockwell’s Advisory. (http://rockwellautomation.custhelp.com/app/answers/detail/a_id/469937)
- For more information on security with Rockwell Automation products, please refer to Rockwell’s Security Advisory Index. (http://rockwellautomation.custhelp.com/app/answers/detail/a_id/54102)
- In addition to applying the above patch, Rockwell Automation recommends customers configure firewalls to block the following TCP ports to prevent traversal of RNA messages into and out of the ICS system: 1330, 1331, 1332, 4241, 4242, 4445, 4446, 6543, 9111, 60093, 49281.
Affected Vendors
Rockwell Automation
Affected Products (8)
Rockwell Automation
·
RSLogix 5000
17|18|19|20
Rockwell Automation
·
Factory Talk
>=CPR9|<=CPR9_SR5
Rockwell Automation
·
FT Directory
vers:all/*
Rockwell Automation
·
FT Alarms & Events
vers:all/*
Rockwell Automation
·
FT View SE
vers:all/*
Rockwell Automation
·
FT Diagnostics
vers:all/*
Rockwell Automation
·
FT Live Data
vers:all/*
Rockwell Automation
·
FT Server Health
vers:all/*
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more