CVE-2025-53947

HIGH

Software <unknown> - Info Disclosure

Title source: llm
STIX 2.1

Description

A local attacker with low privileges on the Windows system where the software is installed can exploit this vulnerability to corrupt sensitive data. A data folder is created with very weak privileges, allowing any user logged into the Windows system to modify its content.

Scores

CVSS v3 7.7
EPSS 0.0002
EPSS Percentile 4.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-276
Status published
Products (5)
Cognex/In-Sight 2000 series 5.x - 6.5.1
Cognex/In-Sight 7000 series 5.x - 6.5.1
Cognex/In-Sight 8000 series 5.x - 6.5.1
Cognex/In-Sight 9000 series 5.x - 6.5.1
Cognex/In-Sight Explorer 5.x - 6.5.1
Published Sep 18, 2025
Tracked Since Feb 18, 2026