CVE-2025-25265 — A web application for configuring the controller is accessible at a specific path. It contains an endpoint that allows a high privileged remote attacker to read files from the system’s file structure. — CVE Database · The Intelligence Room