CVE-2025-13824 - CVE House
Back to Database
Status published High CVE-2025-13824

Micro820®, Micro850®, Micro870® – Specialized Fuzzing Vulnerabilities

Vulnerability Description

A security issue exists due to improper handling of malformed CIP packets during fuzzing. The controller enters a hard fault with solid red Fault LED and becomes unresponsive. Upon power cycle, the controller will enter recoverable fault where the MS LED and Fault LED become flashing red and reports fault code 0xF019. To recover, clear the fault.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-13824

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Rockwell Automation

View all reports →

Affected Software

Micro820®, Micro850®, Micro870®
Vulnerable Versions:
V23.011 and below, V12.013 and lower, V14.011 and lower

Timeline

Official Publish: December 15th, 2025
Last Modified: December 15th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.