CVE-2025-9063

CRITICAL WAF: Low
CVSS 9.8 Published: 2025-10-14
CWE-287

An authentication bypass security issue exists within FactoryTalk View Machine Edition Web Browser ActiveX control. Exploitation of this vulnerability allows unauthorized access to the PanelView Plus 7 Series B, including access to the file system, retrieval of diagnostic information, event logs, and more.

WAF Coverage Analysis

Improper Authentication Low WAF Coverage

OWASP: A07:2021 Identification and Authentication Failures

Affected Software

VendorProductVersion
rockwellautomationfactorytalk_viewup to 15.0

References

Back to CVE Database