Medium severity5.3NVD Advisory· Published Apr 23, 2025· Updated Apr 15, 2026
CVE-2025-2595
CVE-2025-2595
Description
An unauthenticated remote attacker can bypass the user management in CODESYS Visualization and read visualization template files or static elements by means of forced browsing.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
1- ABB AC500 V3 Multiple VulnerabilitiesCISA Alerts