← back
CVE-2025-9161

Rockwell Automation FactoryTalk Optix Remote Code Execution Vulnerability

CVSS 7.3 HIGHEPSS 0.5%CWE-77
A security issue exists within FactoryTalk Optix MQTT broker due to the lack of URI sanitization. This flaw enables the loading of remote Mosquito plugins, which can be used to achieve remote code execution.
CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →