CVE-2025-25265
Unauthenticated File Read via Web Interface
Severity Score
7.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Track*
*SSVC
Descriptions
A web application for configuring the controller is accessible at a specific path. It contains an endpoint that allows an unauthenticated remote attacker to read files from the system’s file structure.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Track*
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2025-02-06 CVE Reserved
- 2025-06-16 CVE Published
- 2025-07-04 CVE Updated
- 2025-08-23 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-306: Missing Authentication for Critical Function
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://certvde.com/en/advisories/VDE-2025-018 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
WAGO Search vendor "WAGO" | WAGO CC100 0751-9x01 Search vendor "WAGO" for product "WAGO CC100 0751-9x01" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "WAGO CC100 0751-9x01" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | CC100 0751-9x01 Search vendor "WAGO" for product "CC100 0751-9x01" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "CC100 0751-9x01" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | PFC100 G1 0750-810x/xxxx-xxxx Search vendor "WAGO" for product "PFC100 G1 0750-810x/xxxx-xxxx" | >= 0.0.0 < 3.10.11 (FW22 Patch 2) Search vendor "WAGO" for product "PFC100 G1 0750-810x/xxxx-xxxx" and version " >= 0.0.0 < 3.10.11 (FW22 Patch 2)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | PFC100 G2 0750-811x-xxxx-xxxx Search vendor "WAGO" for product "PFC100 G2 0750-811x-xxxx-xxxx" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "PFC100 G2 0750-811x-xxxx-xxxx" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | PFC100 G2 0750-811x-xxxx-xxxx Search vendor "WAGO" for product "PFC100 G2 0750-811x-xxxx-xxxx" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "PFC100 G2 0750-811x-xxxx-xxxx" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | PFC200 G1 750-820x-xxx-xxx Search vendor "WAGO" for product "PFC200 G1 750-820x-xxx-xxx" | >= 0.0.0 < 3.10.11 (FW22 Patch 2) Search vendor "WAGO" for product "PFC200 G1 750-820x-xxx-xxx" and version " >= 0.0.0 < 3.10.11 (FW22 Patch 2)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | PFC200 G2 750-821x-xxx-xxx Search vendor "WAGO" for product "PFC200 G2 750-821x-xxx-xxx" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "PFC200 G2 750-821x-xxx-xxx" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | PFC200 G2 750-821x-xxx-xxx Search vendor "WAGO" for product "PFC200 G2 750-821x-xxx-xxx" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "PFC200 G2 750-821x-xxx-xxx" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-420x/8000-000x Search vendor "WAGO" for product "TP600 0762-420x/8000-000x" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "TP600 0762-420x/8000-000x" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-420x/8000-000x Search vendor "WAGO" for product "TP600 0762-420x/8000-000x" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "TP600 0762-420x/8000-000x" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-430x/8000-000x Search vendor "WAGO" for product "TP600 0762-430x/8000-000x" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "TP600 0762-430x/8000-000x" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-430x/8000-000x Search vendor "WAGO" for product "TP600 0762-430x/8000-000x" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "TP600 0762-430x/8000-000x" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-520x/8000-000x Search vendor "WAGO" for product "TP600 0762-520x/8000-000x" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "TP600 0762-520x/8000-000x" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-520x/8000-000x Search vendor "WAGO" for product "TP600 0762-520x/8000-000x" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "TP600 0762-520x/8000-000x" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-530x/8000-000x Search vendor "WAGO" for product "TP600 0762-530x/8000-000x" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "TP600 0762-530x/8000-000x" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-530x/8000-000x Search vendor "WAGO" for product "TP600 0762-530x/8000-000x" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "TP600 0762-530x/8000-000x" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-620x/8000-000x Search vendor "WAGO" for product "TP600 0762-620x/8000-000x" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "TP600 0762-620x/8000-000x" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-620x/8000-000x Search vendor "WAGO" for product "TP600 0762-620x/8000-000x" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "TP600 0762-620x/8000-000x" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-630x/8000-000x Search vendor "WAGO" for product "TP600 0762-630x/8000-000x" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "TP600 0762-630x/8000-000x" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | TP600 0762-630x/8000-000x Search vendor "WAGO" for product "TP600 0762-630x/8000-000x" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "TP600 0762-630x/8000-000x" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | Edge Controller 0752-8303/8000-0002 Search vendor "WAGO" for product "Edge Controller 0752-8303/8000-0002" | >= 0.0.0 < 04.07.01 (FW29) Search vendor "WAGO" for product "Edge Controller 0752-8303/8000-0002" and version " >= 0.0.0 < 04.07.01 (FW29)" | en |
Affected
| ||||||
WAGO Search vendor "WAGO" | Edge Controller 0752-8303/8000-0002 Search vendor "WAGO" for product "Edge Controller 0752-8303/8000-0002" | >= 0.0.0 < 04.07.01 (70) Search vendor "WAGO" for product "Edge Controller 0752-8303/8000-0002" and version " >= 0.0.0 < 04.07.01 (70)" | en |
Affected
|