CVE Details
Basic Information
| Title |
CVE-2025-3945 |
| Type |
cve |
| Published |
2025-05-22T13:15:57 |
| Last Seen |
2025-05-22T13:22:20 |
CVSS Information
| Base Score |
7.2 (HIGH) |
| Attack Vector |
NETWORK |
| Attack Complexity |
LOW |
| Privileges Required |
HIGH |
| User Interaction |
NONE |
| Scope |
UNCHANGED |
| Confidentiality Impact |
HIGH |
| Integrity Impact |
HIGH |
| Availability Impact |
HIGH |
AI Analysis
| AI Description |
This vulnerability allows attackers to inject malicious arguments into commands, potentially leading to unauthorized access or control of the affected system. It affects Tridium Niagara Framework and Tridium Niagara Enterprise Security on QNX, with a CVSS score of 7.2 (High). |
| AI Severity |
High |
| Vendor |
Tridium |
| Product |
Niagara Framework, Niagara Enterprise Security |
| Affected Version |
|
Additional Information
| CVE List |
CVE-2025-3945 |
| CWE List |
CWE-88 |
| Bulletin Family |
cve |
Description
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Tridium Niagara Framework on QNX, Tridium Niagara Enterprise Security on QNX allows Command Delimiters….
CVSS Score Summary
Base Score: %!f(string=#) (HIGH)
View Full CVE Details