CVE-2025-9064CRITICAL 9.1EPSS p41.8%
CVE-2025-9064CVE-2025-9064
Description
A path traversal security issue exists within FactoryTalk View Machine Edition, allowing unauthenticated attackers on the same network as the device to delete any file within the panels operating system. Exploitation of this vulnerability is dependent on the knowledge of filenames to be deleted.
Scoring
| CVSS 3.1 | 9.1 (CRITICAL) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H |
| EPSS | 0.55% probability of exploitation · percentile 41.8% · 2026-06-19T12:03:05Z |
| Published | 2025-10-14 |
| Last modified | 2025-10-28 |
Underlying weaknesses· 2
References
2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')cwe-22 | 0% | live |
| Weakness | Improper Authenticationcwe-287 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.