CVE-2025-0960
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Feb 4, 2025
CWE ID 120
Summary
CVE-2025-0960 is a vulnerability affecting AutomationDirect's C-more EA9 Human-Machine Interface (HMI) system. The issue involves a function with insufficient bounds checking, which an attacker can manipulate to trigger a denial-of-service condition or execute remote code on the targeted device. This weakness could potentially lead to significant disruptions or unauthorized access to industrial control systems, making timely patching essential.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share