CVE-2025-54810
Cognex In-Sight Explorer and In-Sight Camera Firmware Authentication Bypass by Capture-replay
Cognex In-Sight Explorer and In-Sight Camera Firmware expose
a proprietary protocol on TCP port 1069 to perform management operations
such as modifying system properties. The user management functionality
handles sensitive data such as registered usernames and passwords over
an unencrypted channel, allowing an adjacent attacker to intercept valid
credentials to gain access to the device.
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
Cognex · In-Sight 2000 seriesCognex · In-Sight 7000 seriesCognex · In-Sight 8000 seriesCognex · In-Sight 9000 seriesCognex · In-Sight ExplorerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →