Insecure Storage of Sensitive Data in iND Co.,Ltd Products
CVE-2025-53507

7.1HIGH

What is CVE-2025-53507?

Multiple products from iND Co.,Ltd exhibit a vulnerability that allows for the insecure storage of sensitive information. If this vulnerability is exploited, critical configuration data, including admin passwords, could be disclosed, posing a significant security risk to users. It is essential for organizations using these products to address this issue promptly to safeguard their sensitive information.

Affected Version(s)

F2L Assist-SS-A firmware version 1.03 and earlier

F2L Assist-SS-E firmware version 1.01 and earlier

HL320-DLS (for module MC7330) firmware version 2.02t and earlier

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

CVSS V3.0

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-53507 : Insecure Storage of Sensitive Data in iND Co.,Ltd Products