First published: Tue Jan 28 2025(Updated: )
A Remote Code Execution Vulnerability exists in the product and version listed above. The vulnerability is due to lack of input sanitation and could allow a remote attacker to run commands or code as a high privileged user.
Credit: PSIRT@rockwellautomation.com
Affected Software | Affected Version | How to fix |
---|---|---|
Rockwell Automation FactoryTalk View ME |
Upgrade to V15.00 or apply patch in AID 1152571
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-24480 is classified as a Remote Code Execution vulnerability with a high severity rating due to its potential impact.
To fix CVE-2025-24480, ensure that input sanitation is properly implemented and apply any available patches from Rockwell Automation.
CVE-2025-24480 affects Rockwell Automation's FactoryTalk View Machine Edition software.
Yes, CVE-2025-24480 can be exploited remotely by attackers due to inadequate input sanitation.
Exploiting CVE-2025-24480 can allow a remote attacker to execute commands or code with high privileges on the affected system.