Rockwell Automation Redundancy Module Configuration Tool

Summary

Rockwell Automation's Redundancy Module Configuration Tool versions 10.00.00 and versions 9.00.00 through 10.00.00 are affected by vulnerabilities CVE-2026-9633 and CVE-2026-9634. These vulnerabilities, related to incorrect default permissions, could allow a local attacker to escalate privileges and execute processes with administrator rights.

IFF Assessment

FOE

The identified vulnerabilities allow for privilege escalation, which is detrimental to defenders.

Severity

7.3 High

The CVSS score of 7.3 reflects the potential for a local attacker to escalate privileges to administrator or SYSTEM level by exploiting incorrect default permissions, which grants them significant control over the affected system.

Defender Context

Defenders should be aware of this vulnerability affecting Rockwell Automation's Redundancy Module Configuration Tool, particularly in critical manufacturing environments. The exploit involves placing a malicious DLL in a user-writable directory that is later searched by the tool, leading to elevated privileges for the attacker. Prompt patching or implementing vendor-recommended security best practices is crucial.

Read Full Story →