Service Exposure in Cognex In-Sight Explorer and Camera Firmware
CVE-2025-53969
8.6HIGH
What is CVE-2025-53969?
Cognex In-Sight Explorer and In-Sight Camera Firmware have a service that exposes a proprietary protocol on TCP port 1069. This vulnerability allows client-side software, such as the In-Sight Explorer tool, to perform sensitive management operations, including changing network settings or altering user access. The exposure of this service could allow unauthorized users to manipulate critical settings, potentially compromising device security and operational integrity.
Affected Version(s)
In-Sight 2000 series 5.x <= 6.5.1
In-Sight 7000 series 5.x <= 6.5.1
In-Sight 8000 series 5.x <= 6.5.1
References
CVSS V4
Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Diego Giubertoni of Nozomi Networks reported these vulnerabilities to CISA.