Rockwell Automation Redundancy Module Configuration Tool
Summary
Rockwell Automation's Redundancy Module Configuration Tool versions 10.00.00 and versions 9.00.00 through 10.00.00 are affected by vulnerabilities CVE-2026-9633 and CVE-2026-9634. These vulnerabilities, related to incorrect default permissions, could allow a local attacker to escalate privileges and execute processes with administrator rights.
IFF Assessment
The identified vulnerabilities allow for privilege escalation, which is detrimental to defenders.
Severity
The CVSS score of 7.3 reflects the potential for a local attacker to escalate privileges to administrator or SYSTEM level by exploiting incorrect default permissions, which grants them significant control over the affected system.
Defender Context
Defenders should be aware of this vulnerability affecting Rockwell Automation's Redundancy Module Configuration Tool, particularly in critical manufacturing environments. The exploit involves placing a malicious DLL in a user-writable directory that is later searched by the tool, leading to elevated privileges for the attacker. Prompt patching or implementing vendor-recommended security best practices is crucial.