Home
MEDIUM: 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HDefault status
unaffected
Any version before 2025.0.2
affected
Default status
unaffected
Any version before 2025.0.2
affected
Default status
unaffected
Any version before 2025.0.2
affected
Default status
unaffected
Any version before 2025.0.2
affected
Default status
unaffected
Any version before 2025.0.2
affected
Description
An low privileged remote attacker can enforce the watchdog of the affected devices to reboot the PLC due to incorrect default permissions of a config file.
Problem types
CWE-276 Incorrect Default Permissions
Product status
Any version before 2025.0.2
Any version before 2025.0.2
Any version before 2025.0.2
Any version before 2025.0.2
Any version before 2025.0.2
Credits
Nozomi
References
certvde.com/en/advisories/VDE-2025-054