PT-2025-14023 · Valmet · Valmet Dna Visualization
Published
2025-04-01
·
Updated
2025-04-01
·
CVE-2025-0417
CVSS v4.0
7.0
High
| Vector | AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:A/V:D/RE:L/U:Green |
Name of the Vulnerable Software and Affected Versions
Valmet DNA visualization in DNA Operate (affected versions not specified)
Description
The issue is related to a lack of protection against brute force attacks. This allows an attacker to make an arbitrary number of login attempts without any rate limit, increasing the chance of guessing passwords and then performing switching operations.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Improper Restriction of Excessive Authentication Attempts
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Valmet Dna Visualization