CVE-2025-1384
7.0
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H
Exploitability: 2.2 / Impact: 4.7
Source: bba440f9-ef23-4224-aa62-7ac0935d18d1 (Secondary)
Description
Least Privilege Violation (CWE-272) Vulnerability exists in the communication function between the NJ/NX-series Machine Automation Controllers and the Sysmac Studio Software. An attacker may use this vulnerability to perform unauthorized access and to execute unauthorized code remotely to the controller products.
References (2)
Source: bba440f9-ef23-4224-aa62-7ac0935d18d1
Source: bba440f9-ef23-4224-aa62-7ac0935d18d1
Timeline
No history available yet.