CVE-2025-1960
Severity CVSS v4.0:
CRITICAL
Type:
Unavailable / Other
Publication date:
12/03/2025
Last modified:
13/03/2025
Description
CWE-1188: Initialization of a Resource with an Insecure Default vulnerability exists that could cause an<br />
attacker to execute unauthorized commands when a system’s default password credentials have not been<br />
changed on first use. The default username is not displayed correctly in the WebHMI interface.
Impact
Base Score 4.0
9.20
Severity 4.0
CRITICAL
Base Score 3.x
9.80
Severity 3.x
CRITICAL