CNNVD-202511-151 Information

CNNVD ID

CNNVD-202511-151

CVE-2025-54863

  • CNNVD Published: 2025-11-04

Description (Chinese)

Radiometrics VizAir是美国Radiometrics公司的一个气象监测与预警系统。 Radiometrics VizAir存在安全漏洞,该漏洞源于公开可访问的配置文件暴露了系统的REST API密钥,可能导致天气数据和配置被远程篡改、自动化攻击多个实例以及敏感气象数据泄露,进而影响机场运营。

Description (English)

Radiumtrovics Vizair is a meteorological monitoring and early warning system of the United States company Radiumtrotics. There is a security loophole in Radiumtrics Vizair, which stems from open access to configuration documents that exposes the system ’ s REST API key, which may result in remote manipulation of weather data and configurations, multiple instances of automated attacks and the leakage of sensitive meteorological data, thus affecting airport operations.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

Radiometrics

Published

2025-11-04

Last Modified

2026-02-24

References

https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-308-04.json https://www.cisa.gov/news-events/ics-advisories/icsa-25-308-04

Patch

https://radiometrics.com/

Share on: