216.73.216.226

CVE-2025-52545

· Published 02/09/2025 12:15 · Modified 02/09/2025 12:15

Labels: CVE-2025-52545 2025-09-02CVE-2025-52545CWE-522dd59f033-460c-4b88-a075-d4d3fedb6191

Essential information

Published
02/09/2025 12:15
Modified
02/09/2025 12:15
Author
Creator
CVSS
7.7 HIGH (v3) 7.7 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

E3 Site Supervisor Control (firmware version < 2.31F01) RCI service contains an API call to read users info, which returns all usernames and password hashes for the application services.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
dd59f033-460c-4b88-a075-d4d3fedb6191
NVD
View on NVD

Affected products (CPE)

ProductCPE
e3 / site supervisor control cpe:2.3:a:e3:site_supervisor_control:<2.31F01:*:*:*:*:*:*:*

References