← Back to home
ICSA-26-167-03  ·  Published 2026-06-16  ·  View on CISA ICS-CERT ↗

Rockwell Automation Logix 5370 & 5570 Controllers Vulnerable To Denial of Service Via CIP

CVSS 7.5 HIGH

Risk Summary

Successful exploitation of this vulnerability could cause a denial-of-service condition that may result in a major nonrecoverable fault (MNRF).

CVEs (1)

Remediations

  • Rockwell Automation recommends users to update to the following versions: CompactLogix 5370: Versions 34.016 and later
  • Compact GuardLogix 5370: Versions 35.015 and later
  • ControlLogix 5570: Versions 36.012 and later
  • GuardLogix 5570: Versions 37.011 and later
  • For more information, see Rockwell Automation Security Advisory SD1772 (https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1772.html)

Affected Vendors

Rockwell Automation

Affected Products (4)

Rockwell Automation · CompactLogix 5370 <=34.016
Rockwell Automation · Compact GuardLogix 5370 <=35.015
Rockwell Automation · ControlLogix 5570 <=35.015
Rockwell Automation · GuardLogix 5570 36.012

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more