A path traversal security issue exists within FactoryTalk View Machine Edition, allowing unauthenticated attackers on the same network as the device to delete any file within the panels operating system. Exploitation of this vulnerability is dependent on the knowledge of filenames to be deleted.
Metrics
Affected Vendors & Products
References
History
Mon, 20 Oct 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Rockwellautomation
Rockwellautomation factorytalk View Machine Edition |
|
| Vendors & Products |
Rockwellautomation
Rockwellautomation factorytalk View Machine Edition |
Wed, 15 Oct 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 14 Oct 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A path traversal security issue exists within FactoryTalk View Machine Edition, allowing unauthenticated attackers on the same network as the device to delete any file within the panels operating system. Exploitation of this vulnerability is dependent on the knowledge of filenames to be deleted. | |
| Title | Rockwell Automation FactoryTalk View Machine Edition Path Traversal | |
| Weaknesses | CWE-287 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Rockwell
Published: 2025-10-14T12:22:36.551Z
Updated: 2025-10-14T18:46:34.339Z
Reserved: 2025-08-15T13:56:26.986Z
Link: CVE-2025-9064
Updated: 2025-10-14T18:46:29.486Z
Status : Awaiting Analysis
Published: 2025-10-14T13:15:39.643
Modified: 2025-10-14T19:36:29.240
Link: CVE-2025-9064
No data.