ICSA-26-202-07
·
Published 2026-07-21
·
View on CISA ICS-CERT ↗
Rockwell Automation FactoryTalk Services Platform
CVSS 7.8
HIGH
Risk Summary
Successful exploitation of this vulnerability could allow an attacker to impersonate an authorized user on the FTSP server, resulting in unauthorized access to system configurations.
CVEs (1)
Remediations
- Users using FactoryTalk Services Platform v6.60 should apply either the individual patch (RAID 1158263) or the February 2026 Patch Roll-up, or later update.
- Users using the affected software, who are not able to upgrade to one of the corrected versions, should use Rockwell's security best practices.
- For more information, refer to Rockwell Automation's security advisory SD1786 page.
Affected Vendors
Rockwell Automation
Affected Products (1)
Rockwell Automation
·
FactoryTalk Directory (FTSP)
6.60
Affected Sectors
Critical Manufacturing
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more