Home
HIGH: 8.3 CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:HDefault status
unaffected
Any version before 1.6
affected
Description
Allocation of Resources Without Limits or Throttling vulnerability in Shelly Pro 4PM (before v1.6) allows Excessive Allocation via network.
Problem types
CWE-770 Allocation of Resources Without Limits or Throttling
Product status
Any version before 1.6
Credits
Gabriele Quagliarella at Nozomi Networks
References
www.nozominetworks.com/...rability-advisories-cve-2025-11243
www.nozominetworks.com/blog/shelly-pro-4pm-vulnerabilities