software is installed can exploit this vulnerability to corrupt
sensitive data. A data folder is created with very weak privileges,
allowing any user logged into the Windows system to modify its content.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Cognex reports that In-Sight Explorer based vision systems are legacy products not intended for new applications. To reduce risk, asset owners are advised to switch to next generation In-Sight Vision Suite based vision systems, such as the In-Sight 2800, In-Sight 3800, In-Sight 8900 series embedded cameras.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-30189 | A local attacker with low privileges on the Windows system where the software is installed can exploit this vulnerability to corrupt sensitive data. A data folder is created with very weak privileges, allowing any user logged into the Windows system to modify its content. |
Fri, 19 Sep 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 19 Sep 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cognex
Cognex in-sight Camera Firmware Cognex in-sight Explorer Microsoft Microsoft windows |
|
| Vendors & Products |
Cognex
Cognex in-sight Camera Firmware Cognex in-sight Explorer Microsoft Microsoft windows |
Thu, 18 Sep 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A local attacker with low privileges on the Windows system where the software is installed can exploit this vulnerability to corrupt sensitive data. A data folder is created with very weak privileges, allowing any user logged into the Windows system to modify its content. | |
| Title | Cognex In-Sight Explorer and In-Sight Camera Firmware Incorrect Default Permissions | |
| Weaknesses | CWE-276 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-09-19T12:10:31.664Z
Reserved: 2025-08-06T16:32:41.276Z
Link: CVE-2025-53947
Updated: 2025-09-19T12:10:22.475Z
Status : Deferred
Published: 2025-09-18T21:15:48.143
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-53947
No data.
OpenCVE Enrichment
Updated: 2025-09-19T09:35:21Z
EUVD