216.73.216.226

CVE-2025-52544

· Published 02/09/2025 12:15 · Modified 02/09/2025 12:15

Labels: CVE-2025-52544 2025-09-02CVE-2025-52544CWE-20dd59f033-460c-4b88-a075-d4d3fedb6191

Essential information

Published
02/09/2025 12:15
Modified
02/09/2025 12:15
Author
Creator
CVSS
8.8 HIGH (v3) 8.8 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

E3 Site Supervisor Control (firmware version < 2.31F01) has a floor plan feature that allows for an unauthenticated attacker to upload floor plan files. By uploading a specially crafted floor plan file, an attacker can access any file from the E3 file system.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
dd59f033-460c-4b88-a075-d4d3fedb6191
NVD
View on NVD

Affected products (CPE)

ProductCPE
e3 / site supervisor control cpe:2.3:a:e3:site_supervisor_control:<2.31F01:*:*:*:*:*:*:*

References