Vulnerability Description
A security issue exists in the protected mode of EN4TR devices, where sending specifically crafted messages during a Forward Close operation can cause the device to crash.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rockwellautomation | 1756-En2Tr Series A Firmware | < 7.001 |
| Rockwellautomation | 1756-En2Tr Series A | - |
| Rockwellautomation | 1756-En2Tr Series B Firmware | < 7.001 |
| Rockwellautomation | 1756-En2Tr Series B | - |
| Rockwellautomation | 1756-En2Tr Series C Firmware | < 7.001 |
| Rockwellautomation | 1756-En2Tr Series C | - |
| Rockwellautomation | 1756-En4Tr Firmware | < 7.001 |
| Rockwellautomation | 1756-En4Tr | - |
| Rockwellautomation | 1756-En4Trxt Firmware | < 7.001 |
| Rockwellautomation | 1756-En4Trxt | - |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-8008?
CVE-2025-8008 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A security issue exists in the protected mode of EN4TR devices, where sending specifically crafted messages during a Forward Close operation can cause the device to crash.
How severe is CVE-2025-8008?
CVE-2025-8008 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-8008?
Check the references section above for vendor advisories and patch information. Affected products include: Rockwellautomation 1756-En2Tr Series A Firmware, Rockwellautomation 1756-En2Tr Series A, Rockwellautomation 1756-En2Tr Series B Firmware, Rockwellautomation 1756-En2Tr Series B, Rockwellautomation 1756-En2Tr Series C Firmware.