Description
A security issue exists within FactoryTalk® Historian Machine Edition. An attacker with low-level authentication could exploit this vulnerability to achieve remote code execution on the affected device.
Published: 2026-09-01
Score: 8.6 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

An out‑of‑bounds write flaw exists in FactoryTalk® Historian Machine Edition that permits an attacker possessing low‑level credentials to execute arbitrary code on the device. The vulnerability is a classic buffer overflow (CWE‑787) and, according to the advisory, leads directly to remote code execution.

Affected Systems

Rockwell Automation’s FactoryTalk Historian Machine Edition, with no specific version exclusions reported; all installations of the product are considered vulnerable unless otherwise noted by the manufacturer.

Risk and Exploitability

The CVSS score of 8.6 marks this as a high‑severity flaw, and while an EPSS score is not available, the vulnerability is implicitly exploitable over the network by anyone who can authenticate with low‑level access. It is not listed in the CISA KEV catalog, yet its potential impact warrants urgent attention. The attack vector is inferred to be remote access, given the need for network connectivity to the device and the allowance of low‑level authentication.

Generated by OpenCVE AI on September 1, 2026 at 15:23 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the vendor‑issued patch or upgrade to a known safe version as soon as it becomes available
  • Restrict network access to FactoryTalk devices to trusted internal networks and enforce strict authentication policies
  • Implement input validation or bounding checks on related APIs to mitigate similar memory corruption issues

Generated by OpenCVE AI on September 1, 2026 at 15:23 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 03 Sep 2026 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Rockwellautomation
Rockwellautomation factorytalk Historian Machine Edition
Vendors & Products Rockwellautomation
Rockwellautomation factorytalk Historian Machine Edition

Tue, 01 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 01 Sep 2026 13:45:00 +0000

Type Values Removed Values Added
Description A security issue exists within FactoryTalk® Historian Machine Edition. An attacker with low-level authentication could exploit this vulnerability to achieve remote code execution on the affected device.
Title FactoryTalk® Historian Machine Edition - Out-of-Bounds Write Vulnerability
First Time appeared Rockwell Automation
Rockwell Automation factorytalk Historian Machine Edition
Weaknesses CWE-787
CPEs cpe:2.3:a:rockwell_automation:factorytalk_historian_machine_edition:series_c_7.101_series_b_5.202:*:*:*:*:*:*:*
Vendors & Products Rockwell Automation
Rockwell Automation factorytalk Historian Machine Edition
References
Metrics cvssV4_0

{'score': 8.6, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Rockwell Automation Factorytalk Historian Machine Edition
Rockwellautomation Factorytalk Historian Machine Edition
cve-icon MITRE

Status: PUBLISHED

Assigner: Rockwell

Published:

Updated: 2026-09-02T12:52:42.270Z

Reserved: 2025-11-05T19:12:12.688Z

Link: CVE-2025-12768

cve-icon Vulnrichment

Updated: 2026-09-01T15:47:54.095Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-01T14:17:23.980

Modified: 2026-09-01T20:50:01.960

Link: CVE-2025-12768

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-03T16:28:03Z

Weaknesses