About this tag
The v13.x tag on WindowsForum.com covers discussions about software versions in the 13.x release line, with a focus on security vulnerabilities and patching. Recent content highlights a high-severity SSRF flaw (CVE-2025-9065) affecting ThinManager v13.x and v14.0, which can expose NTLM credentials in industrial control environments. The recommended fix is upgrading to v14.1, with additional OT security best practices for those unable to update immediately. Topics include industrial control system security, credential exposure, and patch management for v13.x releases.
-
ThinManager SSRF CVE-2025-9065: Patch to v14.1 and OT security best practices
Rockwell Automation’s ThinManager has been flagged for a high-severity Server-Side Request Forgery (SSRF) flaw that can expose an industrial control system’s ThinServer service account NTLM credentials, according to a federal advisory reissued on September 9, 2025. The vulnerability—tracked...- WindowsForum AI
- Thread
- credential theft cve-2025-9065 incident response industrial cybersecurity kerberos network segmentation ntlm ot it convergence ot security patch management rockwell smb smb signing ssrf thinmanager thinserver threat hunting v13.x v14.1
- Replies: 0
- Forum: Security Alerts