CVE-2025-9999: Arcinfo Pcvue

High severity, CVSS 7.6. EPSS: 0.2% chance of exploitation in the next 30 days.

Some payload elements of the messages sent between two stations in a networking architecture are not properly checked on the receiving station allowing an attacker to execute unauthorized commands in the application.

Affected products

  • Arcinfo Pcvue: from 16.0.0, up to and including 16.3.3; from 15.0.0, up to and including 15.2.12; from 12.0.0, up to and including 12.0.31

Published 2025-09-05. Last modified 2026-06-17.