216.73.217.22

CVE-2025-25061

· Published 04/04/2025 02:15 · Modified 04/04/2025 02:15

Labels: CVE-2025-25061 2025-04-04CVE-2025-25061CWE-441[email protected]

Essential information

Published
04/04/2025 02:15
Modified
04/04/2025 02:15
Author
Creator
CVSS
5.8 MEDIUM (v3.0)
CISA KEV
No
CWE
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N

CVSS metrics

Description

Unintended proxy or intermediary ('Confused Deputy') issue exists in HMI ViewJet C-more series and HMI GC-A2 series, which may allow a remote unauthenticated attacker to use the product as an intermediary for FTP bounce attack.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
* / hmi viewjet c-more cpe:2.3:a:*:hmi_viewjet_c-more:*:*:*:*:*:*:*:*
* / hmi gc-a2 cpe:2.3:a:*:hmi_gc-a2:*:*:*:*:*:*:*:*

References