A cleartext transmission of sensitive information vulnerability in the affected products allows an unauthorized remote attacker to gain login credentials and access the Web-UI.
History

Tue, 21 Oct 2025 13:15:00 +0000

Type Values Removed Values Added
First Time appeared Murrelektronik
Murrelektronik firmware Impact67 Pro 54620
Murrelektronik firmware Impact67 Pro 54630
Murrelektronik firmware Impact67 Pro 54631
Murrelektronik firmware Impact67 Pro 54632
Vendors & Products Murrelektronik
Murrelektronik firmware Impact67 Pro 54620
Murrelektronik firmware Impact67 Pro 54630
Murrelektronik firmware Impact67 Pro 54631
Murrelektronik firmware Impact67 Pro 54632

Tue, 14 Oct 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 14 Oct 2025 08:45:00 +0000

Type Values Removed Values Added
Description A cleartext transmission of sensitive information vulnerability in the affected products allows an unauthorized remote attacker to gain login credentials and access the Web-UI.
Title Murrelektronik: Unprotected Transport of Credentials
Weaknesses CWE-319
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published: 2025-10-14T08:25:52.136Z

Updated: 2025-10-14T18:42:14.852Z

Reserved: 2025-04-16T11:17:48.313Z

Link: CVE-2025-41718

cve-icon Vulnrichment

Updated: 2025-10-14T18:42:11.806Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-10-14T09:15:33.040

Modified: 2025-10-14T19:36:29.240

Link: CVE-2025-41718

cve-icon Redhat

No data.