Successful exploitation of the vulnerability could allow an unauthenticated, remote attacker to send Modbus TCP packets to manipulate Digital Outputs, potentially allowing remote control of relay channel which may lead to operational or safety risks.
Solution:
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Link | Tags |
---|---|
https://www.csa.gov.sg/alerts-and-advisories/alerts/al-2025-061 | third party advisory |
https://github.com/shipcod3/CVE-2025-48466 | third party advisory exploit |