Vulnerability Description
A denial-of-service security issue exists in the affected product and version. The security issue stems from the controller repeatedly attempting to forward messages. The issue could result in a major nonrecoverable fault on the controller.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rockwellautomation | Controllogix 5580 Firmware | 35.013 |
| Rockwellautomation | Controllogix 5580 | - |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-9166?
CVE-2025-9166 is a vulnerability with a CVSS score of 7.5 (HIGH). A denial-of-service security issue exists in the affected product and version. The security issue stems from the controller repeatedly attempting to forward messages. The issue could result in a major...
How severe is CVE-2025-9166?
CVE-2025-9166 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-9166?
Check the references section above for vendor advisories and patch information. Affected products include: Rockwellautomation Controllogix 5580 Firmware, Rockwellautomation Controllogix 5580.