← All Advisories

CVE-2025-12768

Last refreshed2026-10-07

Status: UPDATED  |  Advisory ID: CVE-2025-12768

Key Details

CVECVE-2025-12768
CVSS Score / Version8.6 (High) / CVSS v4.0
Updated2026-09-01
Affected productsRockwell Automation FactoryTalk® Historian Machine Edition
Classified asCWE-787 (Out-of-bounds Write)
Exploitation prediction (EPSS)0.31% probability of exploitation in the next 30 days (22% percentile) -- FIRST.org's EPSS model.

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
Rockwell AutomationFactoryTalk® Historian Machine Edition
SubsystemsSupervisory Control & Operations Platforms
SectorsMultiple

What to Know

A security issue exists within FactoryTalk® Historian Machine Edition. An attacker with low-level authentication could exploit this vulnerability to achieve remote code execution on the affected device. (NVD)

What to Do

Monitor Rockwell Automation's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2025-12768
CVEhttps://www.cve.org/CVERecord?id=CVE-2025-12768