CVE-2025-60038: High severity Rexroth IndraWorks vulnerability
A vulnerability has been identified in Rexroth IndraWorks. This flaw allows an attacker to execute arbitrary code on the user's system by parsing a manipulated file containing malicious serialized data. Exploitation requires user interaction, specifically opening a specially crafted file, which then causes the application to deserialize the malicious data, enabling Remote Code Execution (RCE). This can lead to a complete compromise of the system running Rexroth IndraWorks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60038?
CVE-2025-60038 is classified as a high-severity vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2025-60038?
To mitigate CVE-2025-60038, users should avoid opening untrusted files and ensure they have the latest security updates from Rexroth.
What systems are affected by CVE-2025-60038?
CVE-2025-60038 affects Rexroth IndraWorks software.
What is the exploitation method for CVE-2025-60038?
Exploitation of CVE-2025-60038 requires user interaction by opening a specially crafted file containing malicious serialized data.
Can CVE-2025-60038 compromise my system?
Yes, CVE-2025-60038 can allow attackers to execute arbitrary code, potentially leading to a full system compromise.