CVE-2025-13913
MEDIUMInductive Automation Ignition - Info Disclosure
Title source: llmDescription
A privileged Ignition user, intentionally or otherwise, imports an external file with a specially crafted payload, which executes embedded malicious code.
Scores
CVSS v3
6.3
EPSS
0.0002
EPSS Percentile
5.9%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H
Details
CWE
CWE-502
Status
published
Products (2)
Inductive Automation/Ignition Software
< 8.3.0
Inductive Automation/Ignition Software
8.3.0
Published
Mar 12, 2026
Tracked Since
Mar 13, 2026