A security issues exists within Studio 5000 Logix Designer due to unsafe handling of environment variables. If the specified path lacks a valid file, Logix Designer crashes; However, it may be possible to execute malicious code without triggering a crash.
Metrics
Affected Vendors & Products
References
History
Fri, 15 Aug 2025 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Rockwellautomation
Rockwellautomation studio 5000 Logix Designer |
|
| Vendors & Products |
Rockwellautomation
Rockwellautomation studio 5000 Logix Designer |
Thu, 14 Aug 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 14 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security issues exists within Studio 5000 Logix Designer due to unsafe handling of environment variables. If the specified path lacks a valid file, Logix Designer crashes; However, it may be possible to execute malicious code without triggering a crash. | |
| Title | Studio 5000 Logix Designer® – Arbitrary Code Execution Vulnerability | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Rockwell
Published: 2025-08-14T15:02:05.287Z
Updated: 2025-08-14T19:50:28.826Z
Reserved: 2025-07-21T19:15:30.931Z
Link: CVE-2025-7971
Updated: 2025-08-14T19:50:25.479Z
Status : Awaiting Analysis
Published: 2025-08-14T15:15:42.250
Modified: 2025-08-15T13:12:51.217
Link: CVE-2025-7971
No data.