Tridium Niagara Framework和Tridium Niagara Enterprise Security都是Tridium公司的产品。Tridium Niagara Framework是一个全面的软件基础设施,可解决创建设备到企业应用程序的挑战。Tridium Niagara Enterprise Security是一款基于 Niagara 软件平台构建的全功能访问控制和安全应用程序。 Tridium Niagara Framework和Tridium Niagara Enterpris
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Tridium | Niagara Framework | 0 ~ 4.14.2 | - |
|
| Tridium | Niagara Enterprise Security | 0 ~ 4.14.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-3937 | 7.7 HIGH | Use of Password Hash with Insufficient Computational Effort |
| CVE-2025-3945 | 7.2 HIGH | Improper Neutralization of Argument Delimiters in a Command (‘Argument Injection’) |
| CVE-2025-3944 | 7.2 HIGH | Incorrect Permission Assignment for Critical Resource |
| CVE-2025-3938 | 6.8 MEDIUM | Missing Cryptographic Step |
| CVE-2025-3941 | 5.4 MEDIUM | Improper Handling of Windows: DATA Alternate Data Stream |
| CVE-2025-3940 | 5.3 MEDIUM | Improper Use of Validation Framework |
| CVE-2025-3939 | 5.3 MEDIUM | Observable Response Discrepancy |
| CVE-2025-3942 | 4.3 MEDIUM | Improper Output Neutralization for Logs |
| CVE-2025-3943 | 4.1 MEDIUM | Use of GET Request Method With sensitive Query Strings |
No comments yet