A code execution security issue exists in the affected product. An attacker with physical access could abuse the maintenance menu of the controller with a crafted payload. The security issue can result in arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
Tue, 09 Sep 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Rockwellautomation
Rockwellautomation compactlogix Rockwellautomation compactlogix 5480 |
|
| Vendors & Products |
Rockwellautomation
Rockwellautomation compactlogix Rockwellautomation compactlogix 5480 |
Tue, 09 Sep 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Sep 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A code execution security issue exists in the affected product. An attacker with physical access could abuse the maintenance menu of the controller with a crafted payload. The security issue can result in arbitrary code execution. | |
| Title | Rockwell Automation CompactLogix® 5480 Code Execution Vulnerability | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Rockwell
Published:
Updated: 2025-09-09T13:11:13.829Z
Reserved: 2025-08-19T12:46:07.058Z
Link: CVE-2025-9160
Updated: 2025-09-09T13:11:07.648Z
Status : Awaiting Analysis
Published: 2025-09-09T13:15:32.667
Modified: 2025-09-09T16:28:43.660
Link: CVE-2025-9160
No data.