CVE-2025-41653: Weidmueller: Denial-of-Service Vulnerability in the web server functionality of Industrial Ethernet Switches
An unauthenticated remote attacker can exploit a denial-of-service vulnerability in the device's web server functionality by sending a specially crafted HTTP request with a malicious header, potentially causing the server to crash or become unresponsive.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-41653?
CVE-2025-41653 is classified as a denial-of-service vulnerability that can significantly affect the device's web server functionality.
How do I fix CVE-2025-41653?
To mitigate CVE-2025-41653, update the device firmware to the latest version provided by Weidmueller.
What types of devices are affected by CVE-2025-41653?
CVE-2025-41653 specifically affects Weidmueller Industrial Ethernet Switches.
What can an attacker achieve by exploiting CVE-2025-41653?
An attacker can potentially cause the server to crash or become unresponsive by sending specially crafted HTTP requests.
Is authentication required to exploit CVE-2025-41653?
No, CVE-2025-41653 can be exploited by unauthenticated remote attackers.