← Back to home
ICSA-16-175-01  ·  Published 2025-06-09  ·  View on CISA ICS-CERT ↗

Rockwell Automation Allen-Bradley Stratix 5400 and 5410 Packet Corruption Vulnerability

CVSS 5.8 MEDIUM

CVEs (1)

Remediations

  • The identified vulnerability was originally reported by Cisco to impact the Cisco Industrial Ethernet 4000 Series and 5000 Series switches. Rockwell Automation determined that the vulnerability also impacts Rockwell Automation’s Allen-Bradley Stratix 5400 Industrial Ethernet Switches and the Allen-Bradley Stratix 5410 Industrial Distribution Switches, which contain affected versions of the Cisco IOS firmware. In response to the reported vulnerability, Rockwell Automation has released a new version of the Allen-Bradley Stratix 5400 and Allen-Bradley Stratix 5410 firmware, Version 15.2(4)EA3, which addresses the vulnerability. Rockwell Automations encourages asset owners to upgrade to the newest available versions.
  • Rockwell Automation’s new firmware version, Version 15.2(4)EA3, for the Allen-Bradley Stratix 5400 Industrial Ethernet Switches (Series A) and the Allen-Bradley Stratix 5410 Industrial Distribution Switches (Series A) can be downloaded from the following location (with a valid account): (http://compatibility.rockwellautomation.com/Pages/MultiProductDownload.aspx?famID=5)
  • To determine if Allen-Bradley Stratix 5400 or Allen-Bradley Stratix 5410 switches are using vulnerable firmware, please refer to Rockwell Automation’s Knowledgebase article, KB866255: Upgrading or Verifying Stratix Firmware, which is available at the following location (with a valid account): (https://rockwellautomation.custhelp.com/app/answers/detail/a_id/866255)

Affected Vendors

Rockwell Automation

Affected Products (2)

Rockwell Automation · Allen-Bradley Stratix 5400 Industrial Ethernet Switch Firmware 15.22EA1|15.22EA2
Rockwell Automation · Allen-Bradley Stratix 5410 Industrial Distribution Switch Firmware 15.22EB

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more