CVE-2025-54497

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
18/09/2025
Last modified:
19/09/2025

Description

Cognex In-Sight Explorer and In-Sight Camera Firmware expose <br /> a telnet-based service <br /> on port 23 to allow management operations such as firmware upgrades and <br /> device reboots, which require authentication. A user with protected <br /> privileges can successfully invoke the SetSerialPort functionality to <br /> modify relevant device properties (such as serial interface settings), <br /> contradicting the security model proposed in the user manual.

References to Advisories, Solutions, and Tools