CVE-2025-9064
🟠 Łataj w tym tygodniu
Luka w FactoryTalk View Machine Edition pozwala na usunięcie plików przez nieautoryzowanych użytkowników w sieci.
CVSS
9.1
EPSS
0.6%
Exploit
none
Vendor
rockwellautomation
Opis źródłowy (NVD)
A path traversal security issue exists within FactoryTalk View Machine Edition, allowing unauthenticated attackers on the same network as the device to delete any file within the panels operating system. Exploitation of this vulnerability is dependent on the knowledge of filenames to be deleted.
path-traversal
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 9.1 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.6% |
| Opublikowano (NVD) | 2025-10-14 13:15:39 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-08 12:10:00 UTC |
Referencje