CVE-2025-23365: High severity TIA Administrator vulnerability
A vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected application allows low-privileged users to trigger installations by overwriting cache files and modifying the downloads path. This would allow an attacker to escalate privilege and exceute arbitrary code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23365?
CVE-2025-23365 has a high severity rating due to its potential for privilege escalation and arbitrary code execution.
How do I fix CVE-2025-23365?
To fix CVE-2025-23365, upgrade TIA Administrator to version 3.0.6 or later.
Who is affected by CVE-2025-23365?
CVE-2025-23365 affects all versions of TIA Administrator prior to version 3.0.6.
What types of attacks can CVE-2025-23365 facilitate?
CVE-2025-23365 can allow low-privileged users to escalate privileges and execute arbitrary code.
Is there a workaround for CVE-2025-23365 before upgrading?
While upgrading is recommended to resolve CVE-2025-23365, there are no documented workarounds available.