Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 05 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Socomec diris M-70 Firmware
|
|
| CPEs | cpe:2.3:h:socomec:diris_m-70:-:*:*:*:*:*:*:* cpe:2.3:o:socomec:diris_m-70_firmware:1.6.9:*:*:*:*:*:*:* |
|
| Vendors & Products |
Socomec diris M-70 Firmware
|
Mon, 01 Dec 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Socomec
Socomec diris M-70 |
|
| Vendors & Products |
Socomec
Socomec diris M-70 |
Mon, 01 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 01 Dec 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 01 Dec 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A cleartext transmission vulnerability exists in the WEBVIEW-M functionality of Socomec DIRIS Digiware M-70 1.6.9. A specially crafted HTTP request can lead to a disclosure of sensitive information. An attacker can sniff network traffic to trigger this vulnerability. | |
| Weaknesses | CWE-319 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2025-12-01T20:25:22.686Z
Reserved: 2024-11-27T15:57:31.758Z
Link: CVE-2024-48894
Updated: 2025-12-01T17:05:37.641Z
Status : Analyzed
Published: 2025-12-01T16:15:50.160
Modified: 2025-12-05T21:10:30.213
Link: CVE-2024-48894
No data.
OpenCVE Enrichment
Updated: 2025-12-01T21:27:29Z