CVE-2025-69419

4 karet z 5 položek · v celém archivu · celý přehled CZ · EN/orig

CVE-2025-69419

EPSS 0.01 EPSS k 14. 9. 2026

Hodnocení závažnosti

7.4 CVSS 3.1 CISA-ADP

útok odkudkoli z internetu útok vyžaduje přípravu bez přihlášení bez zásahu uživatele
dopad plný únik dat úplná změna dat bez výpadku
přesah dopad jen na zranitelnou součást

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

zvyšuje závažnost mírně zvyšuje závažnost snižuje závažnost

1

METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4

[VDE-2026-088] The vulnerabilities found in LabX Standard versions 21.3.22 - 21.4.23 are CVE-2025-69419, CVE-2026-0915, CVE-2025-15467, CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671 and are fixed in LabX Standard v21.4.25. The vulnerabilities found in LabX Enterprise versions 21.3.22 - 21.4.23 are CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671 and are fixed in LabX Enterprise v21.4.25 All other vulnerabilities are to be fixed in the upcoming releases.

EPSS 0.48 CVE-2025-15467 CVE-2025-69419 CVE-2026-0915 CVE-2026-33186 CVE-2026-33671 CVE-2026-39821 CVE-2026-4800 METTLER TOLEDO DE

tg: zranitelnost tp: dodavatelský řetězec

· CERT@VDE · METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4

1

SPOJENO PŘES CVE ads-tec Industrial IT: Multiple Vulnerabilities in ADS-TEC IRF Products

[VDE-2026-076] The ADS-TEC IRF1000 and IRF3000 products are affected by multiple vulnerabilities in firmware releases prior to 2.3.0: authorization, robustness and redirect flaws in the proprietary configuration interface and web UI, and multiple vulnerabilities in the bundled third-party components dnsmasq, OpenSC and OpenSSL. All are fixed in firmware 2.3.0.

EPSS 0.03 CVE-2025-68160 CVE-2025-69418 CVE-2025-69419 CVE-2025-69420 CVE-2025-69421 CVE-2026-14167 CVE-2026-14168 CVE-2026-14169 CVE-2026-14171 CVE-2026-22795 CVE-2026-22796 CVE-2026-2291 CVE-2026-40510 CVE-2026-4893 CVE-2026-5172 ads-tec Industrial IT Weidmüller DE

tg: zranitelnost tg: novinka v produktu tp: průmyslové systémy

· CERT@VDE · ads-tec Industrial IT: Multiple Vulnerabilities in ADS-TEC IRF Products

1

METTLER TOLEDO: LabX Standard Report on External Component Analysis - v21.3

[VDE-2026-064] Multiple vulnerabilities have been discovered in LabX Standard v21.3.22. Most of the vulnerabilities are fixed in LabX Standard v21.4.23. The Vulnerabilities CVE-2025-69419, CVE-2026-0915, CVE-2025-15467 and CVE-2025-58187 are not yet fixed. The fix will be available in the upcoming releases. Notice: LabX Standard was formerly known as LabX Cloud Local.

EPSS 0.48 CVE-2025-15467 CVE-2025-58187 CVE-2025-69419 CVE-2026-0915 METTLER TOLEDO DE

tg: zranitelnost

· CERT@VDE · METTLER TOLEDO: LabX Standard Report on External Component Analysis - v21.3

1

Phoenix Contact: Several products are affected by vulnerabilities found in OpenSSL

[VDE-2026-023] Attacks are possible when installing key files and digitally signed objects. These attacks can only be carried out if these files are uploaded and installed by a logged-in user with high privileges.

EPSS 0.48 CVE-2025-15467 CVE-2025-69419 Phoenix Contact OpenSSL DE

tg: zranitelnost tp: průmyslové systémy

· CERT@VDE · Phoenix Contact: Several products are affected by vulnerabilities found in OpenSSL