← Terug naar overzicht

CISA has published an advisory for Rockwell Automation ArmorStart LT versions up to and including v2.001, which are affected by two vulnerabilities. CVE-2026-19471 is a stored cross-site scripting (XSS) vulnerability (CWE-79) that allows attackers to inject malicious scripts executed when other users access the affected page. CVE-2026-19472 is a denial-of-service vulnerability (CWE-770) caused by improper handling of crafted HTTP PUT requests to the embedded web server, resulting in loss of web server availability. Both vulnerabilities are remotely exploitable with no authentication required. The highest CVSS v3.1 score is 7.5 (HIGH) for the DoS vulnerability. Rockwell Automation has addressed both issues in firmware version v2.002 and encourages users to update. No known public exploitation has been reported. The affected product is deployed worldwide in Critical Manufacturing sectors.

Affected products

  • Rockwell Automation ArmorStart LT <=v2.001

Related CVE's

  • CVE-2026-19471
  • CVE-2026-19472

Categories

  • Critical Infrastructure
  • Mobile & IoT
  • Web Technologies