CVE-2025-60037: High severity Rexroth IndraWorks vulnerability
A vulnerability has been identified in Rexroth IndraWorks. This flaw allows an attacker to execute arbitrary code on the user's system by parsing a manipulated file containing malicious serialized data. Exploitation requires user interaction, specifically opening a specially crafted file, which then causes the application to deserialize the malicious data, enabling Remote Code Execution (RCE). This can lead to a complete compromise of the system running Rexroth IndraWorks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60037?
CVE-2025-60037 is considered a high severity vulnerability due to its potential to allow arbitrary code execution.
How do I fix CVE-2025-60037?
To fix CVE-2025-60037, ensure you update to the latest version of Rexroth IndraWorks as recommended by the vendor.
Who is affected by CVE-2025-60037?
CVE-2025-60037 affects all users of Rexroth IndraWorks who may open specially crafted files.
What kind of attack does CVE-2025-60037 enable?
CVE-2025-60037 enables an attacker to execute arbitrary code on a user's system through specially crafted files.
What user action is required for CVE-2025-60037 to be exploited?
Exploitation of CVE-2025-60037 requires user interaction, specifically opening a manipulated file.