CVE-2026-9653

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
14/07/2026
Last modified:
14/07/2026

Description

A denial-of-service security issue exists across all the 1756-EN2, EN3, and ENBT communication module due to improper validation of CIP Implicit Connection packets. An attacker on the network can exploit this by sending crafted packets to continuously disrupt device connections, though device connections will recover immediately after.