Vulnerability Description
Unintended proxy or intermediary ('Confused Deputy') issue exists in HMI ViewJet C-more series and HMI GC-A2 series, which may allow a remote unauthenticated attacker to use the product as an intermediary for FTP bounce attack.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://jvn.jp/en/jp/JVN17260367/
- https://www.electronics.jtekt.co.jp/en/topics/202503207269/
- https://www.electronics.jtekt.co.jp/en/topics/202503207271/
FAQ
What is CVE-2025-25061?
CVE-2025-25061 is a vulnerability with a CVSS score of 5.8 (MEDIUM). Unintended proxy or intermediary ('Confused Deputy') issue exists in HMI ViewJet C-more series and HMI GC-A2 series, which may allow a remote unauthenticated attacker to use the product as an intermed...
How severe is CVE-2025-25061?
CVE-2025-25061 has been rated MEDIUM with a CVSS base score of 5.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-25061?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.