CVE-2025-9166: Rockwell Automation ControlLogix® 5580 V35.013 Denial-Of-Service
Published Sep 9, 2025
·Updated
A denial-of-service security issue exists in the affected product and version. The security issue stems from the controller repeatedly attempting to forward messages. The issue could result in a major nonrecoverable fault on the controller.
Affected Software
3 affected components
Rockwell Automation ControlLogix 5580
All of the following
rockwellautomation Controllogix 5580 Firmware=35.013
rockwellautomation Controllogix 5580
Remediation
Information
Upgrade to
Version 35.014 and later.
Event History
Sep 9, 2025
CVE Published
via MITRE·12:36 PM
Data Sourced
via MITRE·12:36 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Feb 28, 57989
Event
via FIRST·07:25 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-9166?
CVE-2025-9166 is classified as a high severity denial-of-service vulnerability.
2
How do I fix CVE-2025-9166?
To remediate CVE-2025-9166, update the affected Rockwell Automation ControlLogix 5580 software to the latest version.
3
What types of issues does CVE-2025-9166 cause?
CVE-2025-9166 can lead to a major nonrecoverable fault on the controller due to message forwarding attempts.
4
Which product is affected by CVE-2025-9166?
CVE-2025-9166 affects the Rockwell Automation ControlLogix 5580 product.
5
What does a denial-of-service vulnerability like CVE-2025-9166 mean?
A denial-of-service vulnerability like CVE-2025-9166 means that the system may become unresponsive or fail to operate normally.