CNNVD-202510-912 Information

CNNVD ID

CNNVD-202510-912

CVE-2025-3448

  • CNNVD Published: 2025-10-07

Description (Chinese)

B&R Automation Runtime是B&R Automation公司的一个自动化运行时。 B&R Automation Runtime 6.4之前版本存在安全漏洞,该漏洞源于System Diagnostics Manager存在反射型跨站脚本,可能导致执行任意JavaScript代码。

Description (English)

B&R Automation Runtme is an automated running time for B&R Automation. There was a security loophole in the previous version of B&R Automation Runtime 6.4, which originated in the reflective cross-site script of System Diagnostics Manager, which could lead to the implementation of any JavaScript code.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

B&R Automation

Published

2025-10-07

Last Modified

2026-02-24

References

https://www.br-automation.com/fileadmin/SA25P003-178b6a20.pdf

Patch

https://www.br-automation.com/fileadmin/SA25P003-178b6a20.pdf

Share on: