Back to Database
Status published
High
CVE-2025-9036
Rockwell Automation FactoryTalk® Action Manager v1.0.0 Runtime Vulnerability
Vulnerability Description
A security issue in the runtime event system allows unauthenticated connections to receive a reusable API token. This token is broadcasted over a WebSocket and can be intercepted by any local client listening on the connection.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-9036
Credits & Attribution
No credits recorded in the NVD database.
References
More from Rockwell Automation
View All →CVE-2025-9466
ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities
High
8.7
CVE-2025-9465
ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities
High
8.7
CVE-2025-9464
Rockwell Automation ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities
High
8.7
CVE-2025-9437
Rockwell Automation ArmorStart® AOP Denial-of-Service Vulnerability
High
8.7
CVE-2025-9368
432ES-IG3 Series A Denial-of-Service Vulnerability
High
8.7
Affected Vendor
Rockwell Automation
View all reports →Affected Software
FactoryTalk® Action Manager
Vulnerable Versions:
Version 1.0.0 or below
Timeline
Official Publish:
August 14th, 2025
Last Modified:
August 14th, 2025
Added to House:
July 22nd, 2026