CVE-2025-3943
published 2025-05-22CVE-2025-3943: Use of GET Request Method With Sensitive Query Strings vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security…
PriorityP352high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
7.42%
93.7th percentile
Use of GET Request Method With Sensitive Query Strings vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Parameter Injection. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11. Tridium recommends upgrading to Niagara Framework and Enterprise Security versions 4.14.2u2, 4.15.u1, or 4.10u.11.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| tridium | niagara | — | — |
| tridium | niagara | — | — |
| tridium | niagara | — | — |
| tridium | niagara_enterprise_security | < 4.14.2 | 4.14.2 |
| tridium | niagara_enterprise_security | < 4.15.1 | 4.15.1 |
| tridium | niagara_enterprise_security | < 4.10.11 | 4.10.11 |
| tridium | niagara_enterprise_security | — | — |
| tridium | niagara_enterprise_security | — | — |
| tridium | niagara_enterprise_security | — | — |
| tridium | niagara_framework | < 4.14.2 | 4.14.2 |
| tridium | niagara_framework | < 4.15.1 | 4.15.1 |
| tridium | niagara_framework | < 4.10.11 | 4.10.11 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Suricata
ET WEB_SPECIFIC_APPS Niagara Workbench Anti-CSRF Token Disclosure (CVE-2025-3943)
suricata·2025-07-31·CVSS 4.1
CVE-2025-3943 [MEDIUM] ET WEB_SPECIFIC_APPS Niagara Workbench Anti-CSRF Token Disclosure (CVE-2025-3943)
ET WEB_SPECIFIC_APPS Niagara Workbench Anti-CSRF Token Disclosure (CVE-2025-3943)
Rule: alert http $HOME_NET any -> any any (msg:"ET WEB_SPECIFIC_APPS Niagara Workbench Anti-CSRF Token Disclosure (CVE-2025-3943)"; flow:established,to_server; http.method; content:"POST"; http.uri; bsize:12; content:"/csp-reports"; http.cookie; content:"niagara_userid|3d|"; http.request_body; content:"/refresh$3ftoken$3"; fast_pattern; reference:url,www.nozominetworks.com/blog/critical-vulnerabilities-found-in-tridium-niagara-framework; reference:cve,2025-3943; classtype:web-application-activity; sid:2063844; rev:1; metadata:attack_target Server, created_at 2025_07_31, cve CVE_2025_3943, deployment Perimeter, deployment Internal, confidence High, signature_severity Minor, updated_at 2025_07_31, mitre_tactic
No public exploits indexed.
No writeups or analysis indexed.
2025-05-22
Published