THREAT OPS › Threat News › [NVD] CVE-2025-13911 (MEDIUM 6.4) — Ignition by Inductive Automation, when installed with default OS service
account settings, may expose the host system to an elevated code
execution risk via the gateway backup restore functionality. An
authenticated user with Gateway Administrator privileges can import a
mali
[NVD] CVE-2025-13911 (MEDIUM 6.4) — Ignition by Inductive Automation, when installed with default OS service account settings, may expose the host system to an elevated code execution risk via the gateway backup restore functionality. An authenticated user with Gateway Administrator privileges can import a mali
CVE-2025-13911 CVSS: 6.4 MEDIUM Published: 2025-12-18T21:15:52.073
Ignition by Inductive Automation, when installed with default OS service account settings, may expose the host system to an elevated code execution risk via the gateway backup restore functionality. An authenticated user with Gateway Administrator privileges can import a malicious gateway backup (.gwbk) file containing crafted
Indicators of compromise
- CVE-2025-13911cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-13911