CVE-2026-16675
A privilege escalation security issue exists within FactoryTalk® Activation Manager. The security issue stems from custom actions in the installer that spawn visible console windows running with SYSTEM privileges during installation or repair operations. An authenticated attacker with Windows credentials could hijack these console windows to obtain a SYSTEM-level command prompt, allowing full access to all files, processes, and system resources.
Published:Sep 1, 2026
Last Modified:Sep 1, 2026
EPS:Sep 1, 2026
EPSS Score:
CVSS Score:8.5
Affected Products
Vendor
Product
Action
Vendor
Rockwell Automation
Product
Factorytalk Activation Manager
Rockwell Automation
Factorytalk Activation Manager
Vendor
Rockwellautomation
Product
Factorytalk Activation Manager
Rockwellautomation
Factorytalk Activation Manager
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
