CVE-2025-13406: Scanning for higher HART revision device leads into NULL pointer dereference in live list
Published Mar 17, 2026
·Updated
NULL Pointer Dereference vulnerability in Softing Industrial Automation GmbH smartLink SW-HT (Webserver modules) allows HTTP DoS.This issue affects smartLink SW-HT: 1.43.
Affected Software
1 affected component
Softing Industrial Automation GmbH smartLink SW-HT
Remediation
Information
Update smartLink SW-HT to patch V1.43.1 firmware.
Event History
Mar 17, 2026
CVE Published
via MITRE·02:32 PM
Data Sourced
via MITRE·02:32 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-13406?
CVE-2025-13406 has been classified as a DoS vulnerability impacting the availability of the affected software.
2
How do I fix CVE-2025-13406?
To fix CVE-2025-13406, update the smartLink SW-HT software to the latest version provided by Softing Industrial Automation GmbH.
3
What is affected by CVE-2025-13406?
CVE-2025-13406 affects the Softing Industrial Automation GmbH smartLink SW-HT version 1.43.
4
Can CVE-2025-13406 be exploited remotely?
Yes, CVE-2025-13406 can be exploited remotely through HTTP requests targeting the vulnerable web server module.
5
What kind of impact does CVE-2025-13406 have?
The impact of CVE-2025-13406 is a denial of service (DoS), causing the affected web server to become unresponsive.