As cited
Copy frozen at (site build).
vulnerabilities
Rockwell Automation Historian ME
Rockwell Automation disclosed two vulnerabilities affecting Historian ME Series B 5.202 and Series C 7.101. CVE-2025-12768 is an out-of-bounds write flaw with a CVSS 3.1 score of 8 that allows remote code execution with low-level authentication, while CVE-2026-12661 is a stack-based buffer overflow with a CVSS 3.1 score of 4.5 that causes denial of service. No public exploitation has been reported as of the disclosure date.
Why it matters: Organizations operating Historian ME in chemical, manufacturing, food, agriculture, healthcare, or water systems must prioritize patching or isolating these devices, as remote code execution poses direct risk to industrial control system availability and integrity.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
Rockwell Automation Historian ME
Rockwell Automation disclosed two vulnerabilities affecting Historian ME Series B 5.202 and Series C 7.101. CVE-2025-12768 is an out-of-bounds write flaw with a CVSS 3.1 score of 8 that allows remote code execution with low-level authentication, while CVE-2026-12661 is a stack-based buffer overflow with a CVSS 3.1 score of 4.5 that causes denial of service. No public exploitation has been reported as of the disclosure date.
Why it matters: Organizations operating Historian ME in chemical, manufacturing, food, agriculture, healthcare, or water systems must prioritize patching or isolating these devices, as remote code execution poses direct risk to industrial control system availability and integrity.
- Source published
- First seen by Cybersecurity Tracker