CVE 6.9 MEDIUM

Güralp Systems Fortimus Series, Minimus Series, and Certimus Series have an Allocation of Resources Without Limits or Throttling vulnerability_CVE-2025-14466

6.9 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

Description

A vulnerability in the web interface of the Güralp Fortimus Series, Minimus Series and Certimus Series allows an unauthenticated attacker with network access to send specially-crafted HTTP requests that can cause the web service process to deliberately restart. Although this mechanism limits the impact of the attack, it results in a brief denial-of-service condition during the restart.

Basic Information

ID CVE-2025-14466
Source icscert
Published Dec 16, 2025 at 21:31

Affected Product

Vendor Güralp Systems
Product Fortimus Series
Version All versions
Affected Versions Güralp Systems Fortimus Series All versions
Güralp Systems Minimus Series All versions
Güralp Systems Certimus Series All versions

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.