7.4
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:N
Description
The vulnerability, if exploited, could allow an authenticated miscreant
(Process Optimization Designer User) to embed OLE objects into graphics,
and escalate their privileges to the identity of a victim user who
subsequently interacts with the graphical elements.
(Process Optimization Designer User) to embed OLE objects into graphics,
and escalate their privileges to the identity of a victim user who
subsequently interacts with the graphical elements.
Basic Information
ID
CVE-2025-65117
Source
icscert
Published
Jan 16, 2026 at 00:14
Affected Product
Vendor
AVEVA
Product
Process Optimization
Affected Versions
AVEVA Process Optimization 0