Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-13913

Опубликовано: 12 мар. 2026
Источник: nvd
CVSS3: 6.3
CVSS3: 6.8
EPSS Низкий

Описание

A privileged Ignition user, intentionally or otherwise, imports an external file with a specially crafted payload, which executes embedded malicious code.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:inductiveautomation:ignition:*:*:*:*:*:*:*:*
Версия до 8.3.0 (исключая)

EPSS

Процентиль: 27%
0.00345
Низкий

6.3 Medium

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 6.3
github
6 месяцев назад

Inductive Automation Ignition Software is vulnerable to an unauthenticated API endpoint exposure that may allow an attacker to remotely change the "forgot password" recovery email address.

EPSS

Процентиль: 27%
0.00345
Низкий

6.3 Medium

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-502