CVE Vulnerabilities

CVE-2025-65117

Use of Potentially Dangerous Function

Published: Jan 16, 2026 | Modified: Jan 22, 2026
CVSS 3.x
7.7
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The vulnerability, if exploited, could allow an authenticated miscreant (Process Optimization Designer User) to embed OLE objects into graphics, and escalate their privileges to the identity of a victim user who subsequently interacts with the graphical elements.

Weakness

The product invokes a potentially dangerous function that could introduce a vulnerability if it is used incorrectly, but the function can also be used safely.

Affected Software

NameVendorStart VersionEnd Version
Process_optimizationAveva*2025 (excluding)

Potential Mitigations

References