Improper Privilege Management in Sprecher Automation SPRECON-E below version 8.71j allows a remote attacker with low privileges to save unauthorized protection assignments.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:NSprecher Automation Sprecon E Ap 2200
HWSprecher-Automationall versionsSprecher Automation Sprecon E Ap 2200 Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E C
HWSprecher-Automationall versionsSprecher Automation Sprecon E C Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E Cp 2131
HWSprecher-Automationall versionsSprecher Automation Sprecon E Cp 2131 Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E Cp 2330
HWSprecher-Automationall versionsSprecher Automation Sprecon E Cp 2330 Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E Cp 2500
HWSprecher-Automationall versionsSprecher Automation Sprecon E Cp 2500 Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon Edir
HWSprecher-Automationall versionsSprecher Automation Sprecon Edir Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E P Dd6 2
HWSprecher-Automationall versionsSprecher Automation Sprecon E P Dd6 2 Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E P Dl6 1
HWSprecher-Automationall versionsSprecher Automation Sprecon E P Dl6 1 Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E P Dq6 1
HWSprecher-Automationall versionsSprecher Automation Sprecon E P Dq6 1 Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E P Ds6 0
HWSprecher-Automationall versionsSprecher Automation Sprecon E P Ds6 0 Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E T3
HWSprecher-Automationall versionsSprecher Automation Sprecon E T3 Ax 3110
HWSprecher-Automationall versionsSprecher Automation Sprecon E T3 Ax 3110 Firmware
OSSprecher-Automation< 8.71jSprecher Automation Sprecon E T3 Firmware
OSSprecher-Automation< 8.71j
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Related vulnerabilities
CVE-2025-41742CRITICAL9.8PL ✓same product
Sprecher-Automation Sprecon-E: domyślne klucze kryptograficzne umożliwiają pełny dostęp zdalny
CVE-2025-41744CRITICAL9.1PL ✓same product
Domyślne klucze kryptograficzne w urządzeniach Sprecher Automation SPRECON-E
CVE-2022-4333CRITICAL9.8PL ✓same product
Hardcoded Credentials w urządzeniach SPRECON-E CPU firmy Sprecher Automation
CVE-2025-41743MEDIUM4.0same product
Niedostateczna siła szyfrowania w urządzeniach Sprecher Automation SPRECON-E-C, SPRECON-E-P i SPRECON-E-T3 poz...
CVE-2022-4332MEDIUM6.8same product
In Sprecher Automation SPRECON-E-C/P/T3 CPU in variant PU244x a vulnerable firmware verification has been iden...