CVE-2025-0417

Lack of protection against brute force attacks in Valmet DNA visualization in DNA Operate. The possibility to make an arbitrary number of login attempts without any rate limit gives an attacker an increased chance of guessing passwords and then performing switching operations.
CVSS

No CVSS.

Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Falta de protección contra ataques de fuerza bruta en la visualización de DNA de Valmet en DNA Operate. La posibilidad de realizar un número arbitrario de intentos de inicio de sesión sin límite de velocidad aumenta la probabilidad de que un atacante adivine contraseñas y realice operaciones de cambio.

01 Apr 2025, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-01 04:15

Updated : 2026-04-15 00:35


NVD link : CVE-2025-0417

Mitre link : CVE-2025-0417

CVE.ORG link : CVE-2025-0417


JSON object : View

Products Affected

No product.

CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts