Denial-of-Service Vulnerability in GuardLink® EtherNet/IP Interface by Rockwell Automation
CVE-2025-9368

8.7HIGH

Key Information:

Vendor
CVE Published:
9 December 2025

What is CVE-2025-9368?

A security issue has been identified in the GuardLink® EtherNet/IP Interface associated with the 432ES-IG3 Series A. This vulnerability can lead to a denial-of-service condition, requiring a manual power cycle to restore the device's normal operations. Organizations using this interface should be aware of the potential impact and take appropriate measures to mitigate risks.

Affected Version(s)

432ES-IG3 Series A 1.001

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-9368 : Denial-of-Service Vulnerability in GuardLink® EtherNet/IP Interface by Rockwell Automation