CVE-2025-8007: Rockwell Automation 1756-ENT2R, EN4TR, EN4TRXT Vulnerability
A security issue exists in the protected mode of 1756-EN4TR and 1756-EN2TR communication modules, where a Concurrent Forward Close operation can trigger a Major Non-Recoverable (MNFR) fault. This condition may lead to unexpected system crashes and loss of device availability.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8007?
CVE-2025-8007 has been classified as a Major Non-Recoverable fault that can lead to system crashes and loss of device availability.
How do I fix CVE-2025-8007?
Fixing CVE-2025-8007 involves updating the affected communication modules to the latest firmware provided by Rockwell Automation.
Which devices are affected by CVE-2025-8007?
CVE-2025-8007 affects the Rockwell Automation 1756-EN4TR, 1756-EN2TR, 1756-ENT2R, and 1756-EN4TRXT communication modules.
What should I do if I encounter a Major Non-Recoverable fault due to CVE-2025-8007?
If a Major Non-Recoverable fault occurs due to CVE-2025-8007, immediate action should be taken to reboot the device and perform a firmware update.
Is there a workaround for CVE-2025-8007?
Currently, the best method to handle CVE-2025-8007 is to avoid concurrent forward close operations until a firmware update is applied.