


Perceptive Security
SOC/SIEM Consultancy

The vulnerability, if exploited, could allow an unauthenticated
miscreant to achieve remote code execution under OS system privileges of
“taoimr” service, pot…
Published:
15 januari 2026 om 23:00:00
Alert date:
16 januari 2026 om 16:17:23
Source:
nvd.nist.gov
Critical Infrastructure, Enterprise Applications
CVE-2025-61937 is a critical vulnerability affecting the taoimr service that allows unauthenticated remote code execution with system privileges. The vulnerability could result in complete compromise of the model application server. Multiple advisories have been published by AVEVA and CISA regarding this security issue. The vulnerability appears to affect AVEVA industrial automation software products and poses significant risk to operational technology environments.
Technical details
Mitigation steps:
Affected products:
AVEVA taoimr service
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2025-61937
https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-015-01.json
https://softwaresupportsp.aveva.com/en-US/downloads/products/details/a643eaa3-0d85-4fde-ac11-5239e87a68ea
https://www.aveva.com/en/support-and-success/cyber-security-updates/
https://www.cisa.gov/news-events/ics-advisories/icsa-26-015-01
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
