Unencrypted Communication Vulnerability in VNC Server and Client by Endress+Hauser
CVE-2025-27457
Key Information:
- Vendor
Endress+hauser
- Vendor
- CVE Published:
- 3 July 2025
What is CVE-2025-27457?
A security vulnerability exists in the Endress+Hauser VNC Server and Client software, where all communication exchanged between the server and client(s) is transmitted without encryption. This deficiency allows malicious actors to intercept network traffic and potentially acquire sensitive information, posing significant risks to data integrity and confidentiality. It is imperative for users to evaluate their system configurations and implement appropriate security measures to safeguard against unauthorized access.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Endress+Hauser MEAC300-FNADE4 vers:all/*
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
