Description

Rockwell Automation has released security advisories addressing two critical vulnerabilities in its industrial systems. The first affects the FactoryTalk DataMosaix Private Cloud, a solution that scales OT and IT data access across enterprises. Tracked as CVE-2025-12807, this vulnerability has a high CVSS score of 8.8 and allows low-privilege users to perform sensitive database operations via exposed API endpoints. This could lead to unauthorized access to critical system data, bypassing privilege hierarchies. Affected versions include 7.11, 8.00, and 8.01, and users are strongly advised to upgrade to version 8.01.02 to mitigate the risk. The second vulnerability impacts the 432ES-IG3 Series A GuardLink EtherNet/IP Interface, a safety device used to monitor and transmit safety data. Identified as CVE-2025-9368, this flaw has a CVSS score of 7.5 and enables a Denial-of-Service (DoS) attack that disrupts device monitoring. While DoS attacks are usually temporary, in industrial settings, this could lead to significant operational downtime. The device requires a manual power cycle to restore functionality once compromised. The affected version is 1.001, and users should update to software version 2.001.9. Both vulnerabilities present serious risks to industrial operations, potentially leading to unauthorized access or system downtime. Operators using the affected systems should prioritize the recommended updates to secure their environments and maintain safe, uninterrupted operations.