Unrated severityNVD Advisory· Published Nov 4, 2025· Updated Nov 4, 2025
Missing Authentication for Critical Function in Radiometrics VizAir
CVE-2025-61956
Description
Radiometrics VizAir is vulnerable to a lack of authentication mechanisms for critical functions, such as admin access and API requests. Attackers can modify configurations without authentication, potentially manipulating active runway settings and misleading air traffic control (ATC) and pilots. Additionally, manipulated meteorological data could mislead forecasters and ATC, causing inaccurate flight planning.
Affected products
2- Radiometrics/VizAirv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.