Rockwell Automation EN4TR Devices Protected Mode Crash Vulnerability

Vulnerability

A vulnerability exists in the protected mode of Rockwell Automation EN4TR devices. During a Forward Close operation, the device can be made to crash by sending specially crafted messages. This issue is present in versions through 6.001.

Impact

Exploitation of this vulnerability causes the device to crash, leading to unexpected system failures and a loss of device availability.

Remediation

Users can upgrade to version 7.001 or later to address this vulnerability. For those unable to upgrade, Rockwell Automation recommends following their security best practices.

Added: Sep 9, 2025, 1:20 PM
Updated: Sep 9, 2025, 4:52 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
2.5
exploitability
7.0
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.