216.73.216.233

CVE-2025-61956

· Published 04/11/2025 17:16 · Modified 12/11/2025 17:22

Labels: CVE-2025-61956 2025-11-04CVE-2025-61956CWE-306[email protected]

Essential information

Published
04/11/2025 17:16
Modified
12/11/2025 17:22
Author
Creator
CVSS
10.0 CRITICAL (v3) 10.0 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Radiometrics VizAir is vulnerable to a lack of authentication mechanisms for critical functions, such as admin access and API requests. Attackers can modify configurations without authentication, potentially manipulating active runway settings and misleading air traffic control (ATC) and pilots. Additionally, manipulated meteorological data could mislead forecasters and ATC, causing inaccurate flight planning.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
radiometrics / vizair cpe:2.3:a:radiometrics:vizair:*:*:*:*:*:*:*:*

References