C
ognex In-Sight Explorer and In-Sight Camera Firmware expose a telnet-based service on port 23 to allow management operations such as firmware upgrades and device reboots, which require authentication. A user with protected privileges can successfully invoke the SetSerialPort functionality to modify relevant device properties (such as serial interface settings), contradicting the security model proposed in the user manual.
References
Configurations
No configuration.
History
19 Sep 2025, 16:00
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-09-18 22:15
Updated : 2025-09-19 16:00
NVD link : CVE-2025-54497
Mitre link : CVE-2025-54497
CVE.ORG link : CVE-2025-54497
JSON object : View
Products Affected
No product.
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource