CVE-2025-53520 Information

Description

The affected product allows firmware updates to be downloaded from EG4’s website transferred via USB dongles or installed through EG4’s Monitoring Center (remote cloud-connected interface) or via a serial connection and can install these files without integrity checks. The TTComp archive format used for the firmware is unencrypted and can be unpacked and altered without detection.

Reference

https://eg4electronics.com/contact/ https://www.cisa.gov/news-events/ics-advisories/icsa-25-219-07

CNNVD-202508-758 (Published: 2025-08-08)

Share on: