CVE-2026-9653
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
14/07/2026
Last modified:
14/07/2026
Description
A denial-of-service security issue exists across all the 1756-EN2, EN3, and ENBT communication module due to improper validation of CIP Implicit Connection packets. An attacker on the network can exploit this by sending crafted packets to continuously disrupt device connections, though device connections will recover immediately after.
Impact
Base Score 4.0
8.70
Severity 4.0
HIGH



