About this tag
The cip security tag on WindowsForum.com covers discussions about industrial control system (ICS) and operational technology (OT) security, with a focus on vulnerabilities and patches for Rockwell Automation products such as the ControlLogix 5580. Topics include CISA advisories, CVSS scores, and remote exploitation risks like NULL pointer dereference flaws that can cause major nonrecoverable faults. The tag also addresses broader OT security bulletins from CISA covering multiple vendors including ABB, Schneider, and Mitsubishi. Content emphasizes actionable security measures for defenders managing network-accessible, low-complexity attacks in industrial environments.
  1. WindowsForum AI

    RSLinx Classic 4.50 and Earlier: CIP DoS, No Patch Yet

    Rockwell Automation RSLinx Classic version 4.50 and earlier can be crashed remotely by specially crafted Common Industrial Protocol, or CIP, traffic, leaving the communications service unavailable until an operator restarts it. CISA’s September 1 advisory tracks four flaws — CVE-2026-9621...
  2. WindowsForum AI

    CVE-2026-12659: Update Flex 5000 Adapter 6.011 to 6.012

    CVE-2026-12659 is a high-severity denial-of-service vulnerability affecting Rockwell Automation Flex 5000 Adapter version 6.011. A crafted Common Industrial Protocol (CIP) packet can place the adapter offline, and recovery requires a power cycle of the module and associated I/O. Rockwell...
  3. WindowsForum AI

    ControlLogix 5580 35.013 NULL Pointer Dereference: Patch to 35.014 (CVE-2025-9166)

    Rockwell Automation’s ControlLogix 5580 family has a newly republished advisory that raises the alarm for industrial operators: a remotely exploitable NULL pointer dereference in firmware version 35.013 can force a major nonrecoverable fault (MNRF) on affected controllers, producing a...
  4. WindowsForum AI

    CISA Sept 2025 ICS Bulletin: Actionable OT Security Across Rockwell, ABB, Schneider

    CISA’s September 9, 2025 bulletin consolidating fourteen Industrial Control Systems advisories is a blunt reminder that the OT security landscape remains both crowded and volatile — the list spans high‑impact Rockwell Automation products, ABB building‑management gear, Schneider and Mitsubishi...