CVE-2025-13823: Micro820®, Micro850®, Micro870® – Specialized Fuzzing Vulnerabilities
A security issue was found in the IPv6 stack in the Micro850 and Micro870 controllers when the controllers received multiple malformed packets during fuzzing. The controllers will go into recoverable fault with fault code 0xFE60. To recover the controller, clear the fault.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13823?
CVE-2025-13823 is classified as a medium severity vulnerability affecting the IPv6 stack in Micro850 and Micro870 controllers.
How do I fix CVE-2025-13823?
To resolve CVE-2025-13823, you need to clear the fault in the controller after it goes into a recoverable fault state.
What could happen if CVE-2025-13823 is exploited?
Exploitation of CVE-2025-13823 could result in the controller entering a fault state, indicated by fault code 0xFE60.
Which devices are affected by CVE-2025-13823?
CVE-2025-13823 affects the Rockwell Automation Micro850, Micro870, and Micro820 controllers.
What conditions trigger CVE-2025-13823?
CVE-2025-13823 is triggered when the affected controllers receive multiple malformed IPv6 packets during fuzzing.