CNNVD-202510-3169 Information

CNNVD ID

CNNVD-202510-3169

CVE-2025-41719

  • CNNVD Published: 2025-10-22

Description (Chinese)

Sauter modu680-AS是瑞士Sauter公司的一个模块化自动化站兼web服务器。 Sauter modu680-AS 存在安全漏洞,该漏洞源于低权限远程攻击者可通过设置一系列不受支持的字符破坏设备上的Web服务器用户存储,导致删除所有先前配置的用户并创建具有已知默认密码的默认管理员。

Description (English)

Sauter Modu680-AS is a modular automation station and web server at Sauter, Switzerland. Sauter Modu680-AS has a security loophole, which stems from the low-authority remote attacker ’ s ability to destroy the Web server user memory on the device by setting a series of unsupported characters, leading to the deletion of all previously configured users and the creation of a default administrator with known default passwords.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Sauter

Published

2025-10-22

Last Modified

2026-02-24

References

https://sauter.csaf-tp.certvde.com/.well-known/csaf/white/2025/vde-2025-060.json https://access.redhat.com/security/cve/cve-2025-41719

Patch

https://sauter.csaf-tp.certvde.com/.well-known/csaf/white/2025/vde-2025-060.json

Share on: