216.73.216.6

CVE-2025-55222

· Published 01/12/2025 16:15 · Modified 05/12/2025 20:48

Labels: CVE-2025-55222 2025-12-01CVE-2025-55222CWE-306[email protected]

Essential information

Published
01/12/2025 16:15
Modified
05/12/2025 20:48
Author
Creator
CVSS
8.6 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

CVSS metrics

Description

A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP USB Function functionality of Socomec DIRIS Digiware M-70 1.6.9. A specially crafted network packet can lead to a denial of service. An attacker can send an unauthenticated packet to trigger this vulnerability.This vulnerability is specific to the malicious message sent via Modbus RTU over TCP on port 503.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
socomec / diris m-70 firmware cpe:2.3:o:socomec:diris_m-70_firmware:1.6.9:*:*:*:*:*:*:*
socomec / diris m-70 cpe:2.3:h:socomec:diris_m-70:-:*:*:*:*:*:*:*

References