Rockwell Automation has released Redundancy Module Configuration Tool version 10.01.00 which addresses CVE-2026-9633 and CVE-2026-9634. Users are strongly advised to upgrade to the latest version immediately. Customers unable to upgrade should consult Rockwell Automation's security best practices and mitigation guidance published on the vendor's support portal and security advisories page. CISA recommends applying defensive measures outlined in advisory ICSA-26-244-02.
Quick answers
What is CVE-2026-9634?
Rockwell Automation has released Redundancy Module Configuration Tool version 10.01.00 which addresses CVE-2026-9633 and CVE-2026-9634. Users are strongly advised to upgrade to the latest version immediately. Customers unable to upgrade should consult Rockwell Automation's security best practices and mitigation guidance published on the vendor's support portal and security advisories page. CISA recommends applying defensive measures outlined in advisory ICSA-26-244-02.
How severe is CVE-2026-9634?
high, CVSS 7.3
Is CVE-2026-9634 known to be exploited?
It is not marked known-exploited in this record.
How should CVE-2026-9634 be mitigated?
Rockwell Automation has released Redundancy Module Configuration Tool version 10.01.00 which addresses CVE-2026-9633 and CVE-2026-9634. Users are strongly advised to upgrade to the latest version immediately. Customers unable to upgrade should consult Rockwell Automation's security best practices and mitigation guidance published on the vendor's support portal and security advisories page. CISA recommends applying defensive measures outlined in advisory ICSA-26-244-02.
CVSS
7.3
Vendor
Rockwell Automation
Published
Sep 30, 2026 · 08:05
Patch
Unknown / not confirmed
Affected products
Redundancy Module Configuration Tool
Mitigation
Rockwell Automation has released Redundancy Module Configuration Tool version 10.01.00 which addresses CVE-2026-9633 and CVE-2026-9634. Users are strongly advised to upgrade to the latest version immediately. Customers unable to upgrade should consult Rockwell Automation's security best practices and mitigation guidance published on the vendor's support portal and security advisories page. CISA recommends applying defensive measures outlined in advisory ICSA-26-244-02.
The Cybersecurity and Infrastructure Security Agency (CISA) has added two vulnerabilities in Rockwell Automation's Redundancy Module Configuration Tool to its Known Exploited Vulnerabilities catalog. CVE-2026-9633 affects version 10.00.00, while CVE-2026-9634 affects versions >=9.00.00 and <=10.00.00. Both flaws stem from incorrect default permissions that allow standard users to place malicious DLLs in directories searched by the tool. When an administrator runs the application, the malicious DLL is loaded with elevated privileges, enabling privilege escalation to Administrator or SYSTEM level. Rockwell Automation has released version 10.01.00 as a remediation. CISA recommends immediate upgrading and applying defensive measures outlined in the vendor's security best practices.