CVE-2025-59668
Severity CVSS v4.0:
HIGH
Type:
CWE-476
NULL Pointer Dereference
Publication date:
30/09/2025
Last modified:
31/10/2025
Description
Multiple versions of Central Monitor CNS-6201 contain a NULL pointer dereference vulnerability. When processing a crafted certain UDP packet, the affected device may abnormally terminate.
Impact
Base Score 4.0
8.70
Severity 4.0
HIGH
Base Score 3.x
7.50
Severity 3.x
HIGH
References to Advisories, Solutions, and Tools
- https://jvn.jp/en/vu/JVNVU96989989/
- https://www.nihonkohden.com/security.html
- https://www.cisa.gov/news-events/ics-medical-advisories/icsma-25-296-01
- https://www.nihonkohden.com/security/main/01112/teaserItems3/0/linkList/0/link/NKcorporateResponse-CNS-6201_CentralMonitor_Vulnerability(CVE-2025-59668)_en_Rev2.pdf



