CVE-2025-64691

The vulnerability, if exploited, could allow an authenticated miscreant (OS standard user) to tamper with TCL Macro scripts and escalate privileges to OS system, potentially resulting in complete compromise of the model application server.
Configurations

Configuration 1 (hide)

cpe:2.3:a:aveva:process_optimization:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-16 02:16

Updated : 2026-01-22 15:15


NVD link : CVE-2025-64691

Mitre link : CVE-2025-64691

CVE.ORG link : CVE-2025-64691


JSON object : View

Products Affected

aveva

  • process_optimization
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')