Rockwell Automation 1715-AENTR EtherNet/IP Adapter
p a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-195-04.json" strong View CSAF /strong /a /p h2 Summary /h2 p strong Successful exploitation of this vulnerability could allow an attacker to read or delete files, stop tasks, modify memory, and change I/O states, potentially impacting the confidentiality, integrity, and availability of the device. /strong /p p The following versions of Rockwell Automation 1715-AENTR EtherNet/IP Adapter are affected: /p ul li 1715-AENTR EtherNet/IP Adapter lt;=3.003 (CVE-2026-10577) /li /ul div class="csaf-table" table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap thead tr th role="columnheader" data-tablesaw-priority="persist" CVSS /th th role="columnheader" Vendor /th th role="columnheader" Equipment /th th role="columnheader" Vulnerabilities /th /tr /thead tbody tr td v3 10 /td td Rockwell Automation /td td Rockwell Automation 1715-AENTR EtherNet/IP Adapter /td td Missing Authentication for Critical Function /td /tr /tbody /table /div h3 Background /h3 ul li strong Critical Infrastructure Sectors: /strong Energy, Water and Wastewater, Critical Manufacturing /li li strong Countries/Areas Deployed: /strong Worldwide /li li strong Company Headquarters Location: /strong United States /li /ul hr h2 Vulnerabilities /h2 div class="csaf-accordion" p a class="csaf-accordion-toggle-all" href="#" Expand All + /a /p div class="csaf-accordion-item" h3 a class="csaf-accordion-toggle" href="#" CVE-2026-10577 /a /h3 div class="csaf-accordion-content" p A security issue exists within the 1715-AENTR EtherNet/IP Adapter. The affected product exposes a network-accessible debug port that does not enforce proper privilege controls, allowing unauthenticated remote access to intrusive command-line interface (CLI) commands. If exploited, a threat actor could read or delete files, stop tasks, modify memory, and change I/O states, potentially impacting the confidentiality, integrity, and availability of the device. /p p a href="https://www.cve.org/CVERecord?id=CVE-2026-10577" View CVE Details /a /p hr h4 Affected Products /h4 h5 Rockwell Automation 1715-AENTR EtherNet/IP Adapter /h5 div class="ics-vendor-version-status" div class="ics-vendor" strong Vendor: /strong br Rockwell Automation /div div class="ics-version" strong Product Version: /strong br Rockwell Automation 1715-AENTR EtherNet/IP Adapter: lt;=3.003 /div div class="ics-status" strong Product Status: /strong br known_affected /div /div div class="ics-remediations" h6 Remediations /h6 p strong Vendor fix /strong br Rockwell Automation recommends that users update to 1715-AENTR EtherNet/IP Adapter version 3.011 and later. /p p strong Mitigation /strong br Rockwell Automation recommends users of the affected software who are not able to upgrade to one of the corrected versions should use their security best practices. br a href="https://support.rockwellautomation.com/app/answers/answer_view/a_id/1085012/loc/e
Sign in to read the full article
Create a free account to access all news, downloads, and community features
Originally published by CISA
Source: https://www.cisa.gov/news-events/ics-advisories/icsa-26-195-04
This article is shared for informational purposes. All rights belong to the original author and publisher. If you are the copyright holder and would like this content removed, please contact us.