← back
CVE-2025-9364

Rockwell Automation FactoryTalk® Analytics™ LogixAI® Exposed Redis DB

CVSS 8.7 HIGHEPSS 0.3%CWE-497
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 8.7EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
09 Sep 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An open database issue exists in the affected product and version. The security issue stems from an over permissive Redis instance. This could result in an attacker on the intranet accessing sensitive data and potential alteration of data.
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →