CVE Details
Basic Information
| Title |
CVE-2025-3937 |
| Type |
cve |
| Published |
2025-05-22T13:15:56 |
| Last Seen |
2025-05-22T13:22:20 |
CVSS Information
| Base Score |
7.7 (HIGH) |
| Attack Vector |
NETWORK |
| Attack Complexity |
LOW |
| Privileges Required |
LOW |
| User Interaction |
NONE |
| Scope |
CHANGED |
| Confidentiality Impact |
HIGH |
| Integrity Impact |
NONE |
| Availability Impact |
NONE |
AI Analysis
| AI Description |
A vulnerability in the Tridium Niagara Framework allows attackers to weaken password security through insufficient computational effort, potentially leading to unauthorized access. |
| AI Severity |
High |
| Vendor |
Tridium (Honeywell) |
| Product |
Tridium Niagara Framework |
| Affected Version |
Not specified |
Additional Information
| CVE List |
CVE-2025-3937 |
| CWE List |
CWE-916 |
| Bulletin Family |
cve |
Description
Use of Password Hash With Insufficient Computational Effort vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Cryptanalysis….
CVSS Score Summary
Base Score: %!f(string=#) (HIGH)
View Full CVE Details