CVE-2025-52543

E3 Site Supervisor Control (firmware version < 2.31F01) application services (MGW and RCI) uses client side hashing for authentication. An attacker can authenticate by obtaining only the password hash.
CVSS

No CVSS.

Configurations

No configuration.

History

02 Sep 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-02 12:15

Updated : 2025-09-02 15:55


NVD link : CVE-2025-52543

Mitre link : CVE-2025-52543

CVE.ORG link : CVE-2025-52543


JSON object : View

Products Affected

No product.

CWE
CWE-836

Use of Password Hash Instead of Password for Authentication