Description
A vulnerability in the web interface of the Güralp Fortimus Series, Minimus Series and Certimus Series allows an unauthenticated attacker with network access to send specially-crafted HTTP requests that can cause the web service process to deliberately restart. Although this mechanism limits the impact of the attack, it results in a brief denial-of-service condition during the restart.
Problem types
CWE-770 Allocation of Resources Without Limits or Throttling
Product status
All versions
All versions
All versions
Credits
Souvik Kandar
References
www.cisa.gov/news-events/ics-advisories/icsa-25-350-01
github.com/...p/csaf_files/OT/white/2025/icsa-25-350-01.json
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.