CVE-2025-41770: Unauthenticated Denial of Service
An unauthenticated denial-of-service vulnerability in the device's PLCnext Engineer communication interface allow an remote attacker to interrupt access via the client application. Successful exploitation prevents communication until the PLCnext service is manually restarted.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-41770?
The severity of CVE-2025-41770 is classified as high with a score of 7.5.
How does CVE-2025-41770 affect PLCnext Engineer?
CVE-2025-41770 allows an unauthenticated attacker to cause a denial of service, disrupting communication with the PLCnext service.
What type of attack does CVE-2025-41770 enable?
CVE-2025-41770 enables an unauthenticated denial of service attack on the PLCnext Engineer communication interface.
Can CVE-2025-41770 be exploited remotely?
Yes, CVE-2025-41770 can be exploited by a remote attacker who does not require authentication.
How can I fix the vulnerability identified by CVE-2025-41770?
To mitigate CVE-2025-41770, restart the PLCnext service manually and ensure that appropriate security measures are in place to prevent unauthorized access.