CVE-2026-9622: RSLinx Classic® - Multiple Vulnerabilities
Published Sep 1, 2026
·Updated
A denial-of-service security issue exists within RSLinx® Classic. A crafted CIP packet targeting the Forward Close service can cause the RSLinx® Classic service to crash, requiring a restart of the service to recover.
Affected Software
1 affected component
Rockwell Automation RSLinx Classic
Event History
Sep 1, 2026
CVE Published
via MITRE·01:34 PM
Data Sourced
via MITRE·01:34 PM
DescriptionWeakness
Frequently Asked Questions
1
What does an attacker need to do to trigger the denial of service?
An attacker needs to send a crafted CIP packet that targets the Forward Close service in RSLinx Classic.
2
What is required to recover after exploitation?
The RSLinx Classic service must be restarted after it crashes.