Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-27460

Опубликовано: 03 июл. 2025
Источник: nvd
CVSS3: 7.6
CVSS3: 6.8
EPSS Низкий

Описание

The hard drives of the device are not encrypted using a full volume encryption feature such as BitLocker. This allows an attacker with physical access to the device to use an alternative operating system to interact with the hard drives, completely circumventing the Windows login. The attacker can read from and write to all files on the hard drives.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:endress:meac300-fnade4_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:endress:meac300-fnade4:-:*:*:*:*:*:*:*

EPSS

Процентиль: 2%
0.00114
Низкий

7.6 High

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-312
CWE-326

Связанные уязвимости

CVSS3: 7.6
github
около 1 года назад

The hard drives of the device are not encrypted using a full volume encryption feature such as BitLocker. This allows an attacker with physical access to the device to use an alternative operating system to interact with the hard drives, completely circumventing the Windows login. The attacker can read from and write to all files on the hard drives.

CVSS3: 7.6
fstec
около 1 года назад

Уязвимость функции BitLocker() микропрограммного обеспечения промышленного цифрового газоанализатора MEAC300-FNADE4, позволяющая нарушителю получить несанкционированный доступ на чтение и запись защищаемой информации

EPSS

Процентиль: 2%
0.00114
Низкий

7.6 High

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-312
CWE-326