CVE-2025-27460 Information
Jul 04, 2025
cve
Description
The hard drives of the device are not encrypted using a full volume encryption feature such as BitLocker. This allows an attacker with physical access to the device to use an alternative operating system to interact with the hard drives completely circumventing the Windows login. The attacker can read from and write to all files on the hard drives.
Reference
https://sick.com/psirt https://sick.com/psirt https://www.cisa.gov/resources-tools/resources/ics-recommended-practices https://www.endress.com https://www.first.org/cvss/calculator/3.1 https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0008.json https://www.sick.com/.well-known/csaf/white/2025/sca-2025-0008.pdf
Related CNNVD
CNNVD-202507-281 (Published: 2025-07-03)
Share on: