Brute-Force Vulnerability in MEAC300-FNADE4 by Endress+Hauser
CVE-2025-27449

7.5HIGH

What is CVE-2025-27449?

The MEAC300-FNADE4 device by Endress+Hauser lacks adequate defenses against rapid, repeated authentication attempts. This inadequacy leaves it vulnerable to brute-force attacks, allowing malicious actors to potentially gain unauthorized access by exploiting this weakness. It is crucial for users to implement additional security measures to safeguard their systems from such threats.

Affected Version(s)

Endress+Hauser MEAC300-FNADE4 0

Endress+Hauser MEAC300-FNADE4 >=0.17.0

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-27449 : Brute-Force Vulnerability in MEAC300-FNADE4 by Endress+Hauser