216.73.216.6

CVE-2025-61945

· Published 04/11/2025 17:16 · Modified 12/11/2025 13:43

Labels: CVE-2025-61945 2025-11-04CVE-2025-61945CWE-306[email protected]

Essential information

Published
04/11/2025 17:16
Modified
12/11/2025 13:43
Author
Creator
CVSS
10.0 CRITICAL (v3) 10.0 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Radiometrics VizAir is vulnerable to any remote attacker via access to the admin panel of the VizAir system without authentication. Once inside, the attacker can modify critical weather parameters such as wind shear alerts, inversion depth, and CAPE values, which are essential for accurate weather forecasting and flight safety. This unauthorized access could result in the disabling of vital alerts, causing hazardous conditions for aircraft, and manipulating runway assignments, which could result in mid-air conflicts or runway incursions.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
radiometrics / vizair cpe:2.3:a:radiometrics:vizair:*:*:*:*:*:*:*:*

References