CVE Vulnerabilities

CVE-2025-27254

Improper Ownership Management

Published: Mar 10, 2025 | Modified: Oct 07, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

CWE-282 Improper Ownership Management in GE Vernova EnerVista UR Setup allows Authentication Bypass.  The softwares startup authentication can be disabled by altering a Windows registry setting that any user can modify.

Weakness

The product assigns the wrong ownership, or does not properly verify the ownership, of an object or resource.

Potential Mitigations

References