CVE-2025-24479: FactoryTalk® View Machine Edition - Local Code Injection
A Local Code Execution Vulnerability exists in the product and version listed above. The vulnerability is due to a default setting in Windows and allows access to the Command Prompt as a higher privileged user.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-24479?
CVE-2025-24479 has a high severity rating due to its potential for local code execution.
How do I fix CVE-2025-24479?
To mitigate CVE-2025-24479, update your Rockwell Automation FactoryTalk View Machine Edition to the latest version that addresses the vulnerability.
What systems are affected by CVE-2025-24479?
CVE-2025-24479 primarily affects Rockwell Automation FactoryTalk View Machine Edition.
What are the risks associated with CVE-2025-24479?
The risks associated with CVE-2025-24479 include unauthorized access to the Command Prompt with elevated privileges, leading to potential system compromise.
What should I do if I cannot immediately patch CVE-2025-24479?
If immediate patching for CVE-2025-24479 is not possible, consider restricting access to affected systems and monitoring for unusual activity.