CVE-2025-9364
🟡 Monitoruj
Nadmierne uprawnienia w instancji Redis umożliwiają dostęp do wrażliwych danych.
CVSS
8.8
EPSS
0.3%
Exploit
none
Vendor
rockwellautomation
Opis źródłowy (NVD)
An open database issue exists in the affected product and version. The security issue stems from an over permissive Redis instance. This could result in an attacker on the intranet accessing sensitive data and potential alteration of data.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 8.8 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.3% |
| Opublikowano (NVD) | 2025-09-09 13:15:33 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-01 16:10:00 UTC |
Referencje