Executive brief
FactoryTalk Historian Machine Edition is an embedded data historian for industrial automation controllers that logs and retrieves time-series process data. An attacker with basic system access could exploit an out-of-bounds write vulnerability to run arbitrary code on affected devices, potentially compromising production systems and operational data integrity.
Technical details
The vulnerability is an out-of-bounds write (CWE-787) in FactoryTalk Historian Machine Edition that allows an attacker with low-level authentication to achieve remote code execution. The flaw resides in memory management within the affected embedded historian module. An authenticated attacker can write data beyond allocated buffer boundaries, overwriting adjacent memory and executing arbitrary code with the privileges of the historian process. The vulnerability affects Series B and C variants of the 1756-HIST2G module; patches are available in Series B v5.203 and Series C v7.102.
Affected products
- Rockwell Automation FactoryTalk Historian Machine Edition Series B 5.202, Series C 7.101
Timeline
- 2026-09-01: disclosed: Security advisory SD1796 published