Insecure Storage of Sensitive Data in iND Co.,Ltd Products
CVE-2025-53507
7.1HIGH
What is CVE-2025-53507?
Multiple products from iND Co.,Ltd exhibit a vulnerability that allows for the insecure storage of sensitive information. If this vulnerability is exploited, critical configuration data, including admin passwords, could be disclosed, posing a significant security risk to users. It is essential for organizations using these products to address this issue promptly to safeguard their sensitive information.
Affected Version(s)
F2L Assist-SS-A firmware version 1.03 and earlier
F2L Assist-SS-E firmware version 1.01 and earlier
HL320-DLS (for module MC7330) firmware version 2.02t and earlier
References
CVSS V4
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown
CVSS V3.0
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved