Denial-of-Service Vulnerability in FactoryTalk® Historian Machine Edition by Rockwell Automation
CVE-2026-12661

4.8MEDIUM

What is CVE-2026-12661?

A security flaw exists in the FactoryTalk® Historian Machine Edition that may allow an authenticated attacker on a network to submit specially crafted requests to the web interface. These requests can exploit buffer overflow vulnerabilities, potentially causing the device to crash and become unresponsive. It is crucial for users of this product to be aware of these risks and to implement necessary security measures as described in the relevant security advisory.

Affected Version(s)

FactoryTalk® Historian Machine Edition Series C: 7.101 Series B: 5.202

References

CVSS V4

Score:
4.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.