Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-54497

Опубликовано: 18 сент. 2025
Источник: nvd
CVSS3: 8.1
EPSS Низкий

Описание

Cognex In-Sight Explorer and In-Sight Camera Firmware expose a telnet-based service on port 23 to allow management operations such as firmware upgrades and device reboots, which require authentication. A user with protected privileges can successfully invoke the SetSerialPort functionality to modify relevant device properties (such as serial interface settings), contradicting the security model proposed in the user manual.

EPSS

Процентиль: 27%
0.00098
Низкий

8.1 High

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 8.1
github
5 месяцев назад

Cognex In-Sight Explorer and In-Sight Camera Firmware expose a telnet-based service on port 23 to allow management operations such as firmware upgrades and device reboots, which require authentication. A user with protected privileges can successfully invoke the SetSerialPort functionality to modify relevant device properties (such as serial interface settings), contradicting the security model proposed in the user manual.

EPSS

Процентиль: 27%
0.00098
Низкий

8.1 High

CVSS3

Дефекты

CWE-732