CVE-2025-46419: Medium severity westermo weos vulnerability
Published Apr 24, 2025
·Updated
Westermo WeOS 5 through 5.23.0 allows a reboot via a malformed ESP packet.
Affected Software
1 affected component
Westermo WeOS<=5.23.0
Event History
Apr 24, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeakness
Apr 14, 57299
Event
via FIRST·08:42 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-46419?
CVE-2025-46419 has been classified as a critical vulnerability due to its potential to cause a denial of service.
2
How does CVE-2025-46419 affect Westermo WeOS?
CVE-2025-46419 allows an attacker to reboot affected Westermo WeOS devices through a malformed ESP packet.
3
What versions of Westermo WeOS are impacted by CVE-2025-46419?
CVE-2025-46419 affects Westermo WeOS versions up to and including 5.23.0.
4
How can I remediate CVE-2025-46419?
To fix CVE-2025-46419, it is recommended to upgrade Westermo WeOS to the latest version that addresses this vulnerability.
5
Is exploitation of CVE-2025-46419 easy to perform?
Exploitation of CVE-2025-46419 may be feasible for attackers with knowledge of crafting specific types of network packets.