CVE-2025-0960: AutomationDirect C-more EA9 HMI Classic Buffer Overflow
AutomationDirect C-more EA9 HMI contains a function with bounds checks that can be skipped, which could result in an attacker abusing the function to cause a denial-of-service condition or achieving remote code execution on the affected device.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0960?
CVE-2025-0960 has been rated with a high severity level due to its potential to cause denial-of-service or remote code execution.
How do I fix CVE-2025-0960?
To fix CVE-2025-0960, update the AutomationDirect C-more EA9 HMI to the latest version that addresses this vulnerability.
Which versions of AutomationDirect C-more EA9 HMI are affected by CVE-2025-0960?
CVE-2025-0960 affects all versions prior to v6.79 of the AutomationDirect C-more EA9 HMI.
What impact does CVE-2025-0960 have on affected devices?
The impact of CVE-2025-0960 includes a risk of denial-of-service conditions and the possibility of remote code execution on the affected devices.
Is there a workaround for CVE-2025-0960?
Currently, there are no documented workarounds for CVE-2025-0960, so upgrading to a secure version is advised.