CVE-2025-5597 PUBLISHED

WF Steuerungstechnik GmbH - airleader MASTER - Authentication Bypass

Assigner: NCSC.ch
Reserved: 04.06.2025 Published: 04.06.2025 Updated: 04.06.2025

Improper Authentication vulnerability in WF Steuerungstechnik GmbH airleader MASTER allows Authentication Bypass.This issue affects airleader MASTER: 3.00571.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
CVSS Score: 10

Product Status

Vendor WF Steuerungstechnik GmbH
Product airleader MASTER
Versions Default: unaffected
  • Version 3.00571 is affected
  • Version 3.00572 is unaffected

References

Problem Types

  • CWE-287 Improper Authentication CWE

Impacts

  • CAPEC-115 Authentication Bypass