CVE-2025-54818
Severity CVSS v4.0:
HIGH
Type:
CWE-319
Cleartext Transmission of Sensitive Information
Publication date:
18/09/2025
Last modified:
19/09/2025
Description
Cognex In-Sight Explorer and In-Sight Camera Firmware expose <br />
<br />
a proprietary protocol on TCP port 1069 to perform management operations<br />
such as modifying system properties. The user management functionality <br />
handles sensitive data such as registered usernames and passwords over <br />
an unencrypted channel, allowing an adjacent attacker to intercept valid<br />
credentials to gain access to the device.
Impact
Base Score 4.0
8.60
Severity 4.0
HIGH
Base Score 3.x
8.00
Severity 3.x
HIGH