Input Validation Flaw in Device Command Services by Vendor
CVE-2025-41650

7.5HIGH

What is CVE-2025-41650?

An input validation flaw in the command services of several devices allows unauthorized remote attackers to exploit this vulnerability. By sending specially crafted inputs, attackers can disrupt system operations, potentially leading to a denial-of-service condition. This vulnerability highlights the critical need for robust input validation mechanisms to safeguard against untrusted inputs.

Affected Version(s)

IE-SW-PL10M-3GT-7TX 0.0.0 < 3.3.34

IE-SW-PL10MT-3GT-7TX 0.0.0 < 3.3.34

IE-SW-PL16M-16TX 0.0.0 < 3.4.32

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.