Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Rockwellautomation

First CVE: Feb 6, 2009Active for: 17 yearsTotal CVEs: 341
66.2
VTI Score
TOP TARGET

Rockwell Automation develops a broadly deployed portfolio of industrial control systems, programmable logic controllers, and manufacturing execution platforms that are critical to factory automation and process control across discrete and process industries. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, reflecting the memory-safety and input-validation demands of embedded and real-time control software. The exposure concentrates in flagship products such as Arena, MicroLogix 1400, FactoryTalk View, and ThinManager and recurs through weakness classes including improper input validation, out-of-bounds writes, memory-buffer management flaws, and uncontrolled resource consumption—patterns typical of industrial firmware and supervisory software that often prioritize availability and legacy protocol support over defense-in-depth. Defenders responsible for operational technology networks should prioritize inventory and segmentation of these systems, as remediation cycles in industrial environments are characteristically lengthy and many installations remain in service well beyond vendor support timelines. Current exploitation activity and severity distribution are shown alongside this summary.

FAUCET AI Generated
341
Total CVEs
More Total CVEs than 100% of tracked vendors
0.1
Avg CVEs / Product / Year
Bottom 1%
7.8
Avg CVSS Score
Higher Avg CVSS Score than 76% of tracked vendors
0.6%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Rockwellautomation over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 6, 2009
17 years ago
Most Recent CVE
Jul 14, 2026
14 days ago

Products(286 total)

Top CVEs

Signals from CVEs in this vendor scope (341 CVEs).

341 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2023-20198CRITICAL
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS XE Software. We are updating the list of fixed releases and
Oct 16, 202310.099YESYES
CVE-2021-22681CRITICAL
Rockwell Automation Studio 5000 Logix Designer Versions 21 and later, and RSLogix 5000 Versions 16 through 20 use a key to verify Logix controllers are communicating with Rockwell
Mar 3, 20219.890YESNO
CVE-2023-2917CRITICAL
The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability.  Due to an improper input validation, a path traversal vulnerability exist
Aug 17, 20239.879NOYES
CVE-2023-2915CRITICAL
The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability, Due to improper input validation, a path traversal vulnerability exists wh
Aug 17, 20239.175NOYES
CVE-2023-27856HIGH
In affected versions, path traversal exists when processing a message of type 8 in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can explo
Mar 22, 20237.571NOYES
CVE-2020-12028HIGH
In all versions of FactoryTalk View SEA remote, an authenticated attacker may be able to utilize certain handlers to interact with the data on the remote endpoint since those handl
Jul 20, 20208.167NOYES
CVE-2010-2965CRITICAL
The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with firmware 3.2.6 and 3.6.1 and other produc
Aug 5, 20109.861NONO
CVE-2019-6553CRITICAL
A vulnerability was found in Rockwell Automation RSLinx Classic versions 4.10.00 and prior. An input validation issue in a .dll file of RSLinx Classic where the data in a Forward O
Apr 4, 20199.859NONO
CVE-2020-12027MEDIUM
All versions of FactoryTalk View SE disclose the hostnames and file paths for certain files within the system. A remote, authenticated attacker may be able to leverage this informa
Jul 20, 20204.355NOYES
CVE-2020-12029HIGH
All versions of FactoryTalk View SE do not properly validate input of filenames within a project directory. A remote, unauthenticated attacker may be able to execute a crafted file
Jul 20, 20207.855NOYES
View all 341 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products341 CVEs
18%
57%
24%
Severity distribution among all CVEs353,173 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local80 (23.5%)
Network230 (67.4%)
Unknown25 (7.3%)
Physical0 (0.0%)
Adjacent Network6 (1.8%)
Attack Complexity
Low310 (90.9%)
High6 (1.8%)
Unknown25 (7.3%)
User Interaction
None234 (68.6%)
Unknown25 (7.3%)
Required82 (24.0%)
Privileges Required
Low53 (15.5%)
High12 (3.5%)
None251 (73.6%)
Unknown25 (7.3%)

Exploit Exposure

Signals from CVEs in this vendor scope (341 CVEs).

CISA KEV
2 CVEs
0.6% of CVEs· 99th percentile
Metasploit
9 CVEs
2.6% of CVEs· 97th percentile
Nuclei
1 CVE
0.3% of CVEs· 95th percentile
ExploitDB
5 CVEs
1.5% of CVEs· 74th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Rockwellautomation.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Rockwellautomation — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Rockwellautomation's Products

View all 7 CNAs →

Top CWEs