CVE-2025-9063
🟠 Łataj w tym tygodniu
Obejście uwierzytelnienia w FactoryTalk View umożliwia nieautoryzowany dostęp do PanelView Plus 7.
CVSS
9.8
EPSS
0.4%
Exploit
none
Vendor
rockwellautomation
Opis źródłowy (NVD)
An authentication bypass security issue exists within FactoryTalk View Machine Edition Web Browser ActiveX control. Exploitation of this vulnerability allows unauthorized access to the PanelView Plus 7 Series B, including access to the file system, retrieval of diagnostic information, event logs, and more.
auth-bypass
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 9.8 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.4% |
| Opublikowano (NVD) | 2025-10-14 13:15:39 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-08 12:10:00 UTC |
Referencje