CVE-2025-26390 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A vulnerability has been identified in OZW672 (All versions < V6.0), OZW772 (All versions < V6.0). The web service of affected devices is vulnerable to SQL inje…
Critical CVSS: 9.3

CVE-2025-26390

A vulnerability has been identified in OZW672 (All versions < V6.0), OZW772 (All versions < V6.0). The web service of affected devices is vulnerable to SQL injection when checking authentication data. This could allow an unauthenticated remote attacker to bypass the check and authenticate as
Administrator user.
Vendor
Siemens
Product
Ozw672 Firmware
CWE
CWE-89
Yayın Tarihi
2025-05-13 10:15:23
Güncelleme
2025-10-03 20:46:58
Source Identifier
productcert@siemens.com
KEV Date Added
-

Kategoriler

Referanslar