First published: Tue Jan 28 2025(Updated: )
An Incorrect Permission Assignment Vulnerability exists in the product and version listed above. The vulnerability is due to incorrect permissions being assigned to the remote debugger port and can allow for unauthenticated access to the system configuration.
Credit: PSIRT@rockwellautomation.com
Affected Software | Affected Version | How to fix |
---|---|---|
FactoryTalk View |
Upgrade to V15 or apply patch, answer ID 1152306.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-24481 is classified as a high-severity vulnerability due to its potential for unauthenticated access to system configurations.
To fix CVE-2025-24481, ensure that appropriate permissions are assigned to the remote debugger port to restrict unauthorized access.
CVE-2025-24481 is specifically related to incorrect permission assignments within Rockwell Automation FactoryTalk View Site Edition.
Users of Rockwell Automation FactoryTalk View Site Edition are affected by CVE-2025-24481 due to the vulnerability in the remote debugger port.
Yes, CVE-2025-24481 can potentially lead to a data breach by allowing unauthorized users to access sensitive system configurations.