CVE-2025-54497
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
18/09/2025
Last modified:
19/09/2025
Description
Cognex In-Sight Explorer and In-Sight Camera Firmware expose <br />
a telnet-based service <br />
on port 23 to allow management operations such as firmware upgrades and <br />
device reboots, which require authentication. A user with protected <br />
privileges can successfully invoke the SetSerialPort functionality to <br />
modify relevant device properties (such as serial interface settings), <br />
contradicting the security model proposed in the user manual.
Impact
Base Score 4.0
7.20
Severity 4.0
HIGH
Base Score 3.x
8.10
Severity 3.x
HIGH