CVE-2020-25182: Rockwellautomation Aadvance Controller

Medium severity, CVSS 6.7. EPSS: 0.4% chance of exploitation in the next 30 days.

Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x searches for and loads DLLs as dynamic libraries. Uncontrolled loading of dynamic libraries could allow a local, unauthenticated attacker to execute arbitrary code. This vulnerability only affects ISaGRAF Runtime when running on Microsoft Windows systems.

Affected products

Published 2022-03-18. Last modified 2026-06-17.