THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-13911 (MEDIUM 6.4) — Ignition by Inductive Automation, when installed with default OS service account settings, may expose the host system to an elevated code execution risk via the gateway backup restore functionality. An authenticated user with Gateway Administrator privileges can import a mali

[NVD] CVE-2025-13911 (MEDIUM 6.4) — Ignition by Inductive Automation, when installed with default OS service account settings, may expose the host system to an elevated code execution risk via the gateway backup restore functionality. An authenticated user with Gateway Administrator privileges can import a mali

lownvdPublished 2025-12-18

CVE-2025-13911 CVSS: 6.4 MEDIUM Published: 2025-12-18T21:15:52.073

Ignition by Inductive Automation, when installed with default OS service account settings, may expose the host system to an elevated code execution risk via the gateway backup restore functionality. An authenticated user with Gateway Administrator privileges can import a malicious gateway backup (.gwbk) file containing crafted

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-13911