CNNVD-202509-189 Information

CNNVD ID

CNNVD-202509-189

CVE-2025-52546

  • CNNVD Published: 2025-09-02

Description (Chinese)

Copeland E3 Supervisory Control是美国Copeland公司的一款工业设备控制系统。 Copeland E3 Supervisory Control 2.31F01之前版本存在安全漏洞,该漏洞源于楼层平面图功能处理不当,可能导致存储型跨站脚本攻击。

Description (English)

Copeland E3 Supervisory Control is an industrial equipment control system of the United States company Copeland. There was a security loophole in the previous version of Capeland E3 Supervisory Control 2.31F01, which stemmed from the inappropriate handling of floor plan functions, which could lead to a storage-type cross-station script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Copeland

Published

2025-09-02

Last Modified

2026-02-24

References

https://www.armis.com/research/frostbyte10/ https://nvd.nist.gov/vuln/detail/CVE-2025-52546

Patch

https://www.copeland.com/en-us/products/controls-monitoring-systems/facility-controls-electronics/facility-and-system-controls/supervisory-controls-e3#section9

Share on: