CVE-2026-10577: Rockwell Automation 1715 Redundant IO – Access Control Vulnerability
A security issue exists within the 1715-AENTR EtherNet/IP Adapter. The affected product exposes a network-accessible debug port that does not enforce proper privilege controls, allowing unauthenticated remote access to intrusive command-line interface (CLI) commands. If exploited, a threat actor could read or delete files, stop tasks, modify memory, and change I/O states, potentially impacting the confidentiality, integrity, and availability of the device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-10577?
The severity of CVE-2026-10577 is rated as critical with a CVSS score of 10.
How do I fix CVE-2026-10577?
To fix CVE-2026-10577, ensure that you restrict access to the debug port through proper network segmentation and implement authentication controls.
What product is affected by CVE-2026-10577?
The affected product in CVE-2026-10577 is the Rockwell Automation 1715-AENTR EtherNet/IP Adapter.
What type of vulnerability is CVE-2026-10577?
CVE-2026-10577 is an access control vulnerability that allows unauthenticated remote access to a command-line interface.
What potential impact can CVE-2026-10577 have?
If exploited, CVE-2026-10577 can allow a threat actor to execute intrusive commands, potentially compromising the networked system.