CVE-2025-41647
Severity CVSS v4.0:
Pending analysis
Type:
CWE-312
Cleartext Storage of Sensitive Information
Publication date:
25/06/2025
Last modified:
26/06/2025
Description
A local, low-privileged attacker can learn the password of the connected controller in PLC Designer V4 due to an incorrect implementation that results in the password being displayed in plain text under special conditions.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM