CVE-2025-54860
BaseFortify
Publication date: 2025-09-18
Last updated on: 2025-09-19
Assigner: ICS-CERT
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| cognex | in-sight_explorer | * |
| cognex | in-sight_camera | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-307 | The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in Cognex In-Sight Explorer and In-Sight Camera Firmware, which expose a telnet-based service on port 23 for management operations like firmware upgrades and device reboot. The service requires authentication, but due to improper handling of login failures, an attacker can cause a denial-of-service (DoS) attack that makes the telnet service unreachable.
How can this vulnerability impact me? :
The vulnerability can impact you by causing a denial-of-service condition on the telnet management service of the affected devices. This means that legitimate management operations such as firmware upgrades or device reboots may become impossible, potentially disrupting device functionality and maintenance.