Home
CRITICAL: 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
Any version before 2.4.6
affected
Description
An unauthenticated remote attacker can bypass the login to the web application of the affected devices making it possible to access and change all available settings of the IndustrialPI.
Problem types
CWE-704 Incorrect Type Conversion or Cast
Product status
Any version before 2.4.6
References
certvde.com/en/advisories/VDE-2025-039