CVE-2025-27254
CWE-282 "Improper Ownership Management" in GE Vernova EnerVista UR Setup allows Authentication Bypass.
The software's
CWE-282 "Improper Ownership Management" in GE Vernova EnerVista UR Setup allows Authentication Bypass. The software's startup authentication can be disabled by altering a Windows registry setting that any user can modify.
HIGH · CVSS 8
EPSS 0.0001
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0