7.5
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Description
A remote unauthenticated attacker may be able to bypass authentication
by utilizing a specific API route to execute arbitrary OS commands.
by utilizing a specific API route to execute arbitrary OS commands.
Basic Information
ID
CVE-2025-3232
Source
icscert
Published
Dec 24, 2025 at 19:55
Modified
Dec 24, 2025 at 20:01
Affected Product
Vendor
Mitsubishi Electric Europe
Product
smartRTU
Affected Versions
Mitsubishi Electric Europe smartRTU 0