CVE-2025-41701: Beckhoff TE1000 | Twincat 3 Enineering

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

An unauthenticated attacker can trick a local user into executing arbitrary commands by opening a deliberately manipulated project file with an affected engineering tool. These arbitrary commands are executed in the user context.

Affected products

  • Beckhoff TE1000 | Twincat 3 Enineering: before 3.1.4024.67 (fixed in 3.1.4024.67)

Published 2025-09-09. Last modified 2026-06-17.