CVE-2025-54497

Cognex In-Sight Explorer and In-Sight Camera Firmware expose a telnet-based service on port 23 to allow management operations such as firmware upgrades and device reboots, which require authentication. A user with protected privileges can successfully invoke the SetSerialPort functionality to modify relevant device properties (such as serial interface settings), contradicting the security model proposed in the user manual.
Configurations

No configuration.

History

18 Sep 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-18 22:15

Updated : 2025-09-19 16:00


NVD link : CVE-2025-54497

Mitre link : CVE-2025-54497

CVE.ORG link : CVE-2025-54497


JSON object : View

Products Affected

No product.

CWE
CWE-732

Incorrect Permission Assignment for Critical Resource