CVE-2024-8533: Rockwellautomation 2800c Optixpanel Compact Firmware

High severity, CVSS 8.8. EPSS: 1.3% chance of exploitation in the next 30 days.

A privilege escalation vulnerability exists in the Rockwell Automation affected products. The vulnerability occurs due to improper default file permissions allowing users to exfiltrate credentials and escalate privileges.

Affected products

  • Rockwellautomation 2800c Optixpanel Compact Firmware: from 4.0.0.325, before 4.0.2.116 (fixed in 4.0.2.116)
  • Rockwellautomation 2800s Optixpanel Standard Firmware: from 4.0.0.350, before 4.0.2.123 (fixed in 4.0.2.123)
  • Rockwellautomation Embedded Edge Compute Module Firmware: from 4.0.0.347, before 4.0.2.106 (fixed in 4.0.2.106)

Published 2024-09-12. Last modified 2026-06-17.