sensitive information in cleartext within a resource that might be accessible to another control sphere.
No analysis available yet.
Vendor Solution
Emerson recommends users update their Valvelink software to ValveLink 14.0 or later. The upgrade can be downloaded from the Emerson website https://www.emerson.com/en-us/support/software-downloads-drivers .For more information see the associated Emerson security notification. https://www.emerson.com/en-us/support/security-notifications
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-21095 | Emerson ValveLink Products store sensitive information in cleartext within a resource that might be accessible to another control sphere. |
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 11 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
Fri, 11 Jul 2025 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Emerson ValveLink Products store sensitive information in cleartext within a resource that might be accessible to another control sphere. | |
| Title | Emerson ValveLink Products Cleartext Storage of Sensitive Information in Memory | |
| Weaknesses | CWE-316 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-07-11T13:54:53.276Z
Reserved: 2025-06-30T14:34:56.221Z
Link: CVE-2025-50109
Updated: 2025-07-11T13:54:50.255Z
Status : Awaiting Analysis
Published: 2025-07-11T00:15:26.090
Modified: 2025-07-15T13:14:49.980
Link: CVE-2025-50109
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:06:14Z
EUVD