You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2025-7353
About this tag
CVE-2025-7353 is a high-severity vulnerability affecting Rockwell Automation 1756-series ControlLogix EtherNet/IP communication modules. With a CVSS v4 base score of 9.3, it allows remote attackers low-complexity access to a module's memory, enabling memory dumps, arbitrary modification, and potential control over execution flow. The vulnerability impacts multiple 1756-series modules running older firmware releases. Discussions on WindowsForum.com focus on mitigation strategies including immediate firmware updates, network isolation, and layered detection for operators in critical manufacturing, energy, water, and chemical sectors.
Rockwell Automation’s ControlLogix EtherNet/IP communication modules have been publicly flagged for a high-severity vulnerability that, if left unaddressed, can grant remote attackers direct, low-complexity access to a running module’s memory — enabling memory dumps, arbitrary memory...