CVE-2025-62578: DVP-12SE - Modbus/TCP Cleartext Transmission of Sensitive Information
Published Dec 26, 2025
·Updated
DVP-12SE - Modbus/TCP Cleartext Transmission of Sensitive Information
Affected Software
2 affected components
All of the following
Deltaww Dvp-12se Firmware
Deltaww Dvp-12se
Remediation
Information
Users are advised to implement robust network-level countermeasures in accordance with industry best practices for security.
We recommend that users take the following security precautions:
> Utilize the Product's IP Whitelisting Feature: Employ the device's built-in IP whitelisting function to restrict Modbus/TCP access solely to known, trusted client IP addresses.
> Implement Network Segmentation: Ensure the product is placed within a highly segregated zone
> Utilize industrial firewalls to monitor Modbus/TCP traffic
Event History
Dec 26, 2025
CVE Published
via MITRE·06:05 AM
Data Sourced
via MITRE·06:05 AM
RemedyDescriptionWeakness
Data Sourced
via NVD·06:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-62578?
CVE-2025-62578 is considered a high severity vulnerability due to the cleartext transmission of sensitive information.
2
How do I fix CVE-2025-62578?
To mitigate CVE-2025-62578, it is recommended to implement encryption protocols for Modbus/TCP communication.
3
Which devices are affected by CVE-2025-62578?
CVE-2025-62578 specifically affects the Delta DVP-12SE and its firmware versions.
4
What kind of information is exposed by CVE-2025-62578?
CVE-2025-62578 exposes sensitive information like passwords and configuration details due to cleartext transmission.
5
Is there an update available for CVE-2025-62578?
As of now, a specific firmware update for CVE-2025-62578 has not been mentioned publicly.