Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27991 | An unauthenticated remote attacker can bypass the login to the web application of the affected devices making it possible to access and change all available settings of the IndustrialPI. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://certvde.com/en/advisories/VDE-2025-039 |
|
Wed, 02 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 01 Jul 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An unauthenticated remote attacker can bypass the login to the web application of the affected devices making it possible to access and change all available settings of the IndustrialPI. | |
| Title | Pilz: Authentication Bypass in IndustrialPI Webstatus | |
| Weaknesses | CWE-704 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2025-07-02T13:24:37.115Z
Reserved: 2025-04-16T11:17:48.305Z
Link: CVE-2025-41648
Updated: 2025-07-01T13:47:35.531Z
Status : Awaiting Analysis
Published: 2025-07-01T08:15:23.280
Modified: 2025-07-03T15:14:12.767
Link: CVE-2025-41648
No data.
OpenCVE Enrichment
No data.
EUVD