← Back to home
ICSA-25-030-04  ·  Published 2025-01-30  ·  View on CISA ICS-CERT ↗

Rockwell Automation KEPServer

CVSS 7.5 HIGH

Risk Summary

Successful exploitation of this vulnerability could cause the device to crash.

CVEs (1)

Remediations

  • Rockwell automation recommends that users upgrade to KEPServer Version 6.15 or higher.
  • Rockwell Automation also encourages users using the affected software to apply the following risk mitigations, if possible.
  • For information on how to mitigate Security Risks on industrial automation control systems, Rockwell Automation encourages users to implement our suggested security best practices to minimize the risk of the vulnerability.Users can use Stakeholder-Specific Vulnerability Categorization to generate more environment-specific prioritization.

Affected Vendors

Rockwell Automation

Affected Products (1)

Rockwell Automation · KEPServer >=6.0|<=6.14.263

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more