CVE-2025-61956

Source
https://cve.org/CVERecord?id=CVE-2025-61956
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-61956.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-61956
Published
2025-11-04T17:16:23.490Z
Modified
2026-03-15T22:51:22.126510Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Radiometrics VizAir is vulnerable to a lack of authentication mechanisms for critical functions, such as admin access and API requests. Attackers can modify configurations without authentication, potentially manipulating active runway settings and misleading air traffic control (ATC) and pilots. Additionally, manipulated meteorological data could mislead forecasters and ATC, causing inaccurate flight planning.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-61956.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "2025-08"
            }
        ]
    }
]