CVE-2018-19282: Rockwellautomation Powerflex 525 Ac Drives Firmware
Critical severity, CVSS 9.8. EPSS: 5.6% chance of exploitation in the next 30 days.
Rockwell Automation PowerFlex 525 AC Drives 5.001 and earlier allow remote attackers to cause a denial of service by crashing the Common Industrial Protocol (CIP) network stack. The vulnerability allows the attacker to crash the CIP in a way that it does not accept new connections, but keeps the current connections active, which can prevent legitimate users from recovering control.
Affected products
- Rockwellautomation Powerflex 525 Ac Drives Firmware: up to and including 5.001
Published 2019-04-04. Last modified 2026-06-17.