CVE-2025-9166: Rockwellautomation Controllogix 5580 Firmware
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
A denial-of-service security issue exists in the affected product and version. The security issue stems from the controller repeatedly attempting to forward messages. The issue could result in a major nonrecoverable fault on the controller.
Affected products
- Rockwellautomation Controllogix 5580 Firmware: version 35.013 only
Published 2025-09-09. Last modified 2026-10-01.