Home / Security updates / CVE-2025-13911 (Ignition Windows Default)
CVE-2025-13911 (Ignition Windows Default)
Security updates detail rendered from /security-updates/upd_778639edee96573c.
Overview
| ID | upd_778639edee96573c |
| Collection | Security Updates |
| Provider | SafeBase |
| Company | Inductive Automation |
| URL | - |
| Counts | - |
| Updated | - |
Raw record
| Field | Value |
|---|---|
| id | upd_778639edee96573c |
| providerId | safebase |
| organizationId | org_c33cee22406d8250 |
| trustCenterId | tc_f9bb528a92c3549a |
| title | CVE-2025-13911 (Ignition Windows Default) |
| message | If you noticed [Ignition CVE-2025-13911](https://www.cisa.gov/news-events/ics-advisories/icsa-25-352-01), you're probably wondering what this means for you. The default Ignition installation on Windows grants greater operating system permissions than is needed in most cases. An Ignition administrator importing malicious project resources could lead to a system level compromise or other significant effects. This [Tech Advisory](https://links.inductiveautomation.com/ta-resource-import-vulnerability) contains more information. Steps #1-#3 correct the issue. The [Ignition Security Hardening Guide](https://inductiveautomation.com/resources/article/ignition-security-hardening-guide) has been updated with “Appendix A - Restrict the Ignition Service Security” with additional recommendations. Feel free to reach out to [Inductive Automation]([email protected]) if you have any additional questions. |
| url | - |
| publishedAt | 2025-12-18 |
| source | {
"field": "statuspage/public/compliance-update",
"category": "vulnerabilities"
} |
| company | {
"id": "org_c33cee22406d8250",
"name": "Inductive Automation",
"domains": [
"security.inductiveautomation.com",
"inductiveautomation.com"
]
} |
| trust_center | {
"id": "tc_f9bb528a92c3549a",
"name": "Inductive Automation",
"url": "https://security.inductiveautomation.com",
"host": "security.inductiveautomation.com"
} |
| provider | {
"id": "safebase",
"name": "SafeBase"
} |
| links | {
"self": "/v1/security-updates/upd_778639edee96573c",
"company": "/v1/companies/org_c33cee22406d8250",
"trust_center": "/v1/trust-centers/tc_f9bb528a92c3549a",
"provider": "/v1/providers/safebase"
} |
Get this page with API
Rendered from the bluedoor Trust Centers API. Reproduce it:
GET https://api.bluedoor.sh/trust-centers/v1/security-updates/upd_778639edee96573cJSON