Rockwell Automation Flex 5000 Adapter
Rockwell Automation has released a security advisory regarding a denial-of-service vulnerability in its Flex 5000 Adapter software. Exploitation could lead to a denial-of-service condition, and Rockwell recommends upgrading to version 6.012. CISA advises minimizing network exposure and implementing robust security practices to mitigate risk.
Rockwell Automation has issued a security advisory concerning a denial-of-service vulnerability within its Flex 5000 Adapter software. The issue stems from improper handling of exceptional conditions when processing crafted CIP packets sent to the adapter. A power cycle is required to recover the module and associated I/O.
Affected versions include Flex 5000 Adapter 6.011 (CVE-2026-12659). The vulnerability is critical and could lead to a denial-of-service condition.
Rockwell Automation recommends users upgrade to version 6.012 to address the issue. CISA advises organizations to take defensive measures, including minimizing network exposure for all control system devices, isolating control system networks from business networks, and utilizing secure remote access methods like VPNs.
This vulnerability is critical and has been reported to CISA. No public exploitation specifically targeting this vulnerability has been reported at this time. Rockwell Automation Security Advisory SD1789 provides further details: https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1789.html