Credential Storage Vulnerability in MET ONE 3400+ Instruments by MET ONE
CVE-2025-0941

5.8MEDIUM

Key Information:

Vendor
Beckman Coulter Life Sciences
Status
Met One 3400+
Vendor
CVE Published:
26 February 2025

Summary

The MET ONE 3400+ instruments running software version 1.0.41 exhibit a significant concern where, under specific rare conditions, they may temporarily store sensitive credentials in plain text. Although this data is not accessible to unauthenticated users, it raises serious implications for cybersecurity and data protection measures, necessitating prompt attention and remediation.

Affected Version(s)

MET ONE 3400+ 1.0.41

References

CVSS V3.1

Score:
5.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.