CVE 8.1 HIGH

AVEVA Process Optimization Missing Authorization_CVE-2025-64729

8.1 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:L

Description

The vulnerability, if exploited, could allow an authenticated miscreant
(OS Standard User) to tamper with Process Optimization project files,
embed code, and escalate their privileges to the identity of a victim
user who subsequently interacts with the project files.

Basic Information

ID CVE-2025-64729
Source icscert
Published Jan 16, 2026 at 00:12

Affected Product

Vendor AVEVA
Product Process Optimization
Affected Versions AVEVA Process Optimization 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.