Code Execution Flaw in Studio 5000 Logix Designer by Rockwell Automation
CVE-2025-7971

7.3HIGH

What is CVE-2025-7971?

A vulnerability exists in Studio 5000 Logix Designer that arises from improper management of environment variables. This flaw can lead to unexpected application crashes if a specified path is incorrect or non-existent. More critically, it could allow for the execution of malicious code, posing significant risks to users and their systems without necessarily causing a crash in the application.

Affected Version(s)

Studio 5000 Logix Designer® V36.00.02

References

CVSS V4

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-7971 : Code Execution Flaw in Studio 5000 Logix Designer by Rockwell Automation