CNNVD-202512-3368 Information

CNNVD ID

CNNVD-202512-3368

CVE-2025-13911

  • CNNVD Published: 2025-12-18

Description (Chinese)

Inductive Automation Ignition是美国Inductive Automation公司的一套用于SCADA系统的集成软件平台。该平台支持SCADA(数据采集与监控系统)、HMI(人机界面)等。 Inductive Automation Ignition存在安全漏洞,该漏洞源于缺少安全控制,可能导致系统权限提升。

Description (English)

Active Automation Ignition is an integrated software platform for the SCADA system of the United States of America. The platform supports SCADA (data acquisition and monitoring system), HMI (human interface), etc. There is a security loophole, which stems from a lack of security controls and may lead to an increase in system privileges.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Inductive Automation

Published

2025-12-18

Last Modified

2026-02-24

References

https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-352-01.json https://security.inductiveautomation.com/ https://www.cisa.gov/news-events/ics-advisories/icsa-25-352-01

Patch

https://inductiveautomation.com/

Share on: