CVE-2025-0994 | Trimble Cityworks up to 23.9 MS IIS deserialization (icsa-25-037-04)
A vulnerability labeled as critical has been found in Trimble Cityworks up to 23.9. This impacts an unknown function of the component MS IIS. The manipulation results in deserialization.
This vulnerability is cataloged as CVE-2025-0994. The attack may be launched remotely. Furthermore, there is an exploit available.
The affected component should be upgraded.