CVE-2025-0960

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Feb 4, 2025
CWE ID 120

Summary

CVE-2025-0960 is a vulnerability affecting AutomationDirect's C-more EA9 Human-Machine Interface (HMI) system. The issue involves a function with insufficient bounds checking, which an attacker can manipulate to trigger a denial-of-service condition or execute remote code on the targeted device. This weakness could potentially lead to significant disruptions or unauthorized access to industrial control systems, making timely patching essential.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share