# CVE-2025-9364

## Summary

- **CVE ID:** CVE-2025-9364
- **Severity:** HIGH
- **CVSS Score:** 8.7 (CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N)
- **CWE:** CWE-497
- **Published:** Sep 9, 2025
- **Last Modified:** Mar 12, 2026

## Description

An open database issue exists in the affected product and version. The security issue stems from an over permissive Redis instance. This could result in an attacker on the intranet accessing sensitive data and potential alteration of data.

## Affected Products

- Rockwell Automation — FactoryTalk® Analytics™ LogixAI® (Versions 3.00 and 3.01)

## References

- [CNA](https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1748.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.29%
- **EPSS Percentile:** 21.2

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._