PT-2025-5370 · Rockwell Automation · Factorytalk® View Site Edition

Published

2025-01-28

·

Updated

2025-02-06

·

CVE-2025-24481

CVSS v4.0

7.0

High

VectorAV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Product and version mentioned (affected versions not specified)
Description The issue is related to an incorrect permission assignment in the product, which is due to the incorrect assignment of permissions to the remote debugger port. This can allow for unauthenticated access to the system configuration. The vulnerability is being actively exploited.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2025-24481

Affected Products

Factorytalk® View Site Edition