CVE-2025-47415: Crestron Touchscreens x60, x70 Series

Medium severity, CVSS 6.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in CRESTRON TOUCHSCREENS x70 allows Relative Path Traversal.This issue affects TOUCHSCREENS x70: from 3.000.0110.001 before 3.001.0031.001. Confirmed Affected Hardware: TSW-760, TSW-1060 Confirmed Affected Firmware: 3.002.1061 - (no fix released, product discontinued)   For x70   The Affected Firmware:- 3.000.0110.001  and versions below The Fixed Firmware:- 3.001.0031.001

Affected products

  • Crestron Touchscreens x60, x70 Series: from 3.000.0110.001, before 3.001.0031.001 (fixed in 3.001.0031.001)

Published 2025-09-09. Last modified 2026-06-17.