SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-12661

MEDIUM · CVSS 4.8 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-09-01 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

FactoryTalk® Historian Machine Edition is vulnerable to a denial-of-service condition that can be exploited by an authenticated, network-adjacent attacker through specially crafted requests to its web interface, leading to a buffer overflow and potential device crash. Organizations utilizing this software should prioritize patching to mitigate the risk of service disruption. This vulnerability is particularly relevant for industries relying on real-time data collection and analysis, where uptime is critical.

CVE
CVE-2026-12661
Severity
MEDIUM
CVSS
4.8
EPSS
0.15%

Original NVD Description

A denial-of-service security issue exists within FactoryTalk® Historian Machine Edition.  A network adjacent attacker who is authenticated could send crafted requests to the web interface, resulting in buffer overflow conditions that may cause the device to crash and become unresponsive.