Security Advisory

CVE-2025-52873

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-09-18 21:22:38
Last updated 2025-09-19 13:15:17
Assigner icscert
CVSS score 8.1
State PUBLISHED

Description

Cognex In-Sight Explorer and In-Sight Camera Firmware expose a telnet-based service on port 23 to allow management operations such as firmware upgrades and device reboots, which require authentication. A user with protected privileges can successfully invoke the SetSystemConfig functionality to modify relevant device properties (such as network settings), contradicting the security model proposed in the user manual.