Critical severity10.0NVD Advisory· Published Nov 4, 2025· Updated Jun 17, 2026
CVE-2025-61956
CVE-2025-61956
Description
Radiometrics VizAir is vulnerable to a lack of authentication mechanisms for critical functions, such as admin access and API requests. Attackers can modify configurations without authentication, potentially manipulating active runway settings and misleading air traffic control (ATC) and pilots. Additionally, manipulated meteorological data could mislead forecasters and ATC, causing inaccurate flight planning.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:radiometrics:vizair:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:radiometrics:vizair:*:*:*:*:*:*:*:*range: <2025-08
- (no CPE)
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
2- github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-308-04.jsonnvdThird Party Advisory
- www.cisa.gov/news-events/ics-advisories/icsa-25-308-04nvdMitigationThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.