CVE-2025-48397

The privileged user could log in without sufficient credentials after enabling an application protocol. This security issue has been fixed in the latest script patch latest version of of Eaton BLSS (7.3.0.SCP004).
Configurations

No configuration.

History

03 Nov 2025, 16:15

Type Values Removed Values Added
References
  • {'url': 'https://https://https://www.eaton.com/content/dam/eaton/company/news-insights/cybersecurity/security-bulletins/etn-va-2025-1030.pdf', 'source': 'CybersecurityCOE@eaton.com'}
  • () https://www.eaton.com/content/dam/eaton/company/news-insights/cybersecurity/security-bulletins/etn-va-2025-1030.pdf -

03 Nov 2025, 10:15

Type Values Removed Values Added
Summary (en) The privileged user could log in without sufficient credentials after enabling an application protocol. (en) The privileged user could log in without sufficient credentials after enabling an application protocol. This security issue has been fixed in the latest script patch latest version of of Eaton BLSS (7.3.0.SCP004).

03 Nov 2025, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-03 09:15

Updated : 2025-11-04 15:41


NVD link : CVE-2025-48397

Mitre link : CVE-2025-48397

CVE.ORG link : CVE-2025-48397


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function