CVE-2025-41662: Weidmueller: Security routers IE-SR-2TX are affected by Cross-Site Request Forgery
Rejected reason: CVE-2025-41662 is considered redundant or unnecessary and thus should be withdrawn. Instead, a new CVE CVE-2025-41687 has been reserved to better reflect the updated analysis.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-41662?
CVE-2025-41662 is considered a critical vulnerability due to the potential for unauthenticated remote command execution with root privileges.
How do I fix CVE-2025-41662?
To mitigate CVE-2025-41662, ensure that your devices are updated with the latest patches from Weidmueller that address the CSRF vulnerability.
What should I do if I am using Weidmueller IE-SR-2TX regarding CVE-2025-41662?
If you are using Weidmueller IE-SR-2TX, review your device settings and apply recommended security updates to protect against CVE-2025-41662.
Can CVE-2025-41662 affect my system if it is behind a firewall?
While a firewall can provide a layer of security, CVE-2025-41662 can still pose a risk if the system is exposed to untrusted networks or services.
What exploitation methods are available for CVE-2025-41662?
CVE-2025-41662 can be exploited via crafted requests that allow attackers to bypass CSRF protections, targeting the main web interface of affected devices.