SEPTEMBER 24, 2026
Live Feed
Back to database
Case File

CVE-2025-11694

UNKNOWN · CVSS N/A EPSS 0.17%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-06-16 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. It may lead to a denial-of-service condition.

CVE
CVE-2025-11694
Severity
UNKNOWN
CVSS
N/A
EPSS
0.17%

Original NVD Description

A security issue exists within 1769 CompactLogix controllers due to the missing validation of sequence numbers and source IP addresses in the CIP protocol. This allows attacker to abuse the exposed Connection ID’s visible on the web interface to perform denial-of-service attacks, resulting in a minor fault.