Vulnerability Description
Cognex In-Sight Explorer and In-Sight Camera Firmware expose a telnet-based service on port 23 to allow management operations such as firmware upgrades and device reboots, which require authentication. A user with protected privileges can successfully invoke the SetSerialPort functionality to modify relevant device properties (such as serial interface settings), contradicting the security model proposed in the user manual.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-54497?
CVE-2025-54497 is a vulnerability with a CVSS score of 8.1 (HIGH). Cognex In-Sight Explorer and In-Sight Camera Firmware expose a telnet-based service on port 23 to allow management operations such as firmware upgrades and device reboots, which require authenticat...
How severe is CVE-2025-54497?
CVE-2025-54497 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-54497?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.