A denial of service security issue exists in the
affected product. The security issue stems from a fault occurring when a
crafted CIP message is sent. Devices with less memory are more likely to be
affected. This can result in a major nonrecoverable fault (MNRF). A program
download is required to recover.

Project Subscriptions

Vendors Products
Rockwellautomation Subscribe
Compactlogix Subscribe
Controllogix Subscribe
Advisories

No advisories yet.

Fixes

Solution

Upgrade to  Version 34.016 and laterVersion 35.015 and later Version 36.012 and later Version 37.011 and later


Workaround

No workaround given by the vendor.

History

Tue, 16 Jun 2026 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Rockwellautomation
Rockwellautomation compactlogix
Rockwellautomation controllogix
Vendors & Products Rockwellautomation
Rockwellautomation compactlogix
Rockwellautomation controllogix

Tue, 16 Jun 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 16 Jun 2026 15:00:00 +0000

Type Values Removed Values Added
Description A denial of service security issue exists in the affected product. The security issue stems from a fault occurring when a crafted CIP message is sent. Devices with less memory are more likely to be affected. This can result in a major nonrecoverable fault (MNRF). A program download is required to recover.
Title Rockwell Automation Logix 5370 and 5570 Controllers Vulnerable To Denial of Service Via CIP
Weaknesses CWE-404
References
Metrics cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Rockwell

Published:

Updated: 2026-06-16T15:20:36.449Z

Reserved: 2026-06-04T19:20:43.192Z

Link: CVE-2026-11317

cve-icon Vulnrichment

Updated: 2026-06-16T15:20:32.459Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-06-16T15:16:34.607

Modified: 2026-06-16T15:26:04.250

Link: CVE-2026-11317

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-16T16:30:16Z

Weaknesses