← Retour aux CVEs
CVE-2025-9036
N/ADescription
A security issue in the runtime event system allows unauthenticated connections to receive a reusable API token. This token is broadcasted over a WebSocket and can be intercepted by any local client listening on the connection.
Details CVE
Score CVSS v3.1N/A
Publie8/14/2025
Derniere modification8/15/2025
Sourcenvd
Observations honeypot0
Faiblesses (CWE)
CWE-200
References
https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1740.html(PSIRT@rockwellautomation.com)
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.