TROYANOSYVIRUS
Voltar para CVEs

CVE-2025-41742

CRITICAL
9.8

Descricao

Sprecher Automations SPRECON-E-C,  SPRECON-E-P, SPRECON-E-T3 is vulnerable to attack by an unauthorized remote attacker via default cryptographic keys. The use of these keys allows the attacker to read, modify, and write projects and data, or to access any device via remote maintenance.

Detalhes CVE

Pontuacao CVSS v3.19.8
SeveridadeCRITICAL
Vetor CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vetor de ataqueNETWORK
ComplexidadeLOW
Privilegios necessariosNONE
Interacao do usuarioNONE
Publicado12/2/2025
Ultima modificacao2/23/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

sprecher-automation:sprecon-e-csprecher-automation:sprecon-e-c_firmwaresprecher-automation:sprecon-e-psprecher-automation:sprecon-e-p_firmwaresprecher-automation:sprecon-e-t3sprecher-automation:sprecon-e-t3_firmware

Fraquezas (CWE)

CWE-1394

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.