Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-11917— ThinManager® - Path Traversal via API

AI Predicted 8.1 Difficulty: Moderate EPSS 0.32% · P25

Possible ATT&CK Techniques 1AI

T1059 · Command and Scripting Interpreter

Affected Version Matrix 1

VendorProductVersion RangeStatus
Rockwell AutomationFactoryTalk ThinManager13.0.0 – 13.0.7, 13.1.0 – 13.1.5, 13.2.0 – 13.2.4, 14.0.0 – 14.0.2affected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-11917

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
ThinManager® - Path Traversal via API
Source: CVE Program / CVE List V5
Vulnerability Description
A path traversal security issue exists within Rockwell Automation ThinManager® software due to improper limitation of file save operations within the API. An authenticated attacker could exploit this vulnerability to write arbitrary files to restricted system directories outside of the application's intended directory.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N
Source: CVE Program / CVE List V5
Vulnerability Type
对路径名的限制不恰当(路径遍历)
Source: CVE Program / CVE List V5
Vulnerability Title
Rockwell Automation FactoryTalk ThinManager 路径遍历漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Rockwell Automation FactoryTalk ThinManager是美国Rockwell Automation基金会的一款工厂可视化管理软件。 Rockwell Automation FactoryTalk ThinManager存在路径遍历漏洞,该漏洞源于API中文件保存操作限制不当,可能导致经过身份验证的攻击者将任意文件写入应用程序预期目录之外的受限系统目录。以下版本受到影响:13.0.0版本至13.0.7版本、13.1.0版本至13.1.5版本、13.2.0版本至13.2.4版本
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Rockwell AutomationFactoryTalk ThinManager 13.0.0 – 13.0.7, 13.1.0 – 13.1.5, 13.2.0 – 13.2.4, 14.0.0 – 14.0.2 -

II. Public POCs for CVE-2026-11917

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-11917

登录查看更多情报信息。

Vendor Advisories for CVE-2026-11917 (1)

Same Patch Batch · Rockwell Automation · 2026-07-14 · 17 CVEs total

CVE-2026-8085Rockwell Automation Arena® - Memory Corruption Vulnerability
CVE-2026-8314Rockwell Automation Arena® - Memory Corruption Vulnerability
CVE-2026-8313Rockwell Automation Arena® - Memory Corruption Vulnerability
CVE-2026-96531756-EN2, 1756-EN3, and 1756-ENBT - Denial of Service via CIP Connection ID
CVE-2026-91401718-AENTR/1719-AENTR - Denial of Service
CVE-2026-10714Rockwell Automation FactoryTalk® Services Platform FTSP - Weak Authentication via JWT Vali
CVE-2026-105731734 POINT I/OTM - Denial of Service via Malformed Inputs on CIP Object
CVE-2025-12012CompactLogix ®, ControlLogix ®, Compact GuardLogix ® and GuardLogix ® Buffer Overflow
CVE-2025-12011CompactLogix ®, ControlLogix ®, Compact GuardLogix ® and GuardLogix ® Buffer Overflow
CVE-2026-9108Studio 5000 Logix Designer® – Multiple Vulnerabilities
CVE-2026-9128Studio 5000 Logix Designer® – Multiple Vulnerabilities
CVE-2026-9636Rockwell Automation CompactLogix® 5380 ControlLogix® 5580 / 1756-EN4 Communications Module
CVE-2026-9292Rockwell Automation FactoryTalk® DataMosaix™ Private Cloud - Stored Cross-Site Scripting
CVE-2026-9127Studio 5000 Logix Designer® – Multiple Vulnerabilities
CVE-2026-12659Rockwell Automation Flex 5000® Adapter - Denial of Service
CVE-2025-11698CompactLogix ®, ControlLogix ®, Compact GuardLogix ® and GuardLogix ® Buffer Overflow

IV. Related Vulnerabilities

V. Comments for CVE-2026-11917

No comments yet


Leave a comment