CVE-2025-3223: WorkstationST EGD Configuration Server Path Traversal Vulnerability
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in GE Vernova WorkstationST on Windows (EGD Configuration Server modules) allows Path Traversal.This issue affects WorkstationST: WorkstationST V07.10.10C and earlier.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3223?
CVE-2025-3223 is classified as a medium severity vulnerability due to its potential for unauthorized file access through path traversal.
How do I fix CVE-2025-3223?
To fix CVE-2025-3223, update the GE Vernova WorkstationST to version later than V07.10.10C.
What systems are affected by CVE-2025-3223?
CVE-2025-3223 affects GE Vernova WorkstationST versions V07.10.10C and earlier on Windows.
What is a Path Traversal vulnerability in the context of CVE-2025-3223?
A Path Traversal vulnerability like CVE-2025-3223 allows attackers to access files and directories outside the intended directory by manipulating file paths.
Is CVE-2025-3223 being actively exploited?
As of now, there have been no confirmed reports of active exploitation of CVE-2025-3223, but it remains crucial to apply security updates promptly.