NONE · 0

CVE-2025-7973

A security issue exists in FactoryTalk ViewPoint version 14.0 or below due to improper handling of MSI repair operations. During a repair, attackers can hijack the cscript.exe console window, which ru...

Vulnerability Description

A security issue exists in FactoryTalk ViewPoint version 14.0 or below due to improper handling of MSI repair operations. During a repair, attackers can hijack the cscript.exe console window, which runs with SYSTEM privileges. This can be exploited to spawn an elevated command prompt, enabling full privilege escalation.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-7973?

CVE-2025-7973 is a documented vulnerability. A security issue exists in FactoryTalk ViewPoint version 14.0 or below due to improper handling of MSI repair operations. During a repair, attackers can hijack the cscript.exe console window, which ru...

How severe is CVE-2025-7973?

CVSS scoring is not yet available for CVE-2025-7973. Check NVD for updates.

Is there a patch for CVE-2025-7973?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.