CVE-2025-54319
MEDIUM EPSS 22.0%
Published Jul 20, 202511mo ago · Modified Jun 17, 20261w ago
6.3 CVSS 3.1
Published Jul 20, 2025 11mo ago
Last Modified Jun 17, 2026 1w ago
Description
An issue was discovered in Westermo WeOS 5 (5.24 through 5.24.4). A threat actor potentially can gain unauthorized access to sensitive information via system logging information (syslog verbose logging that includes credentials).
CVSS Details
Base Score
Exploitability
Impact
Vector string
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N Attack Vector Network
Attack Complexity High
Privileges Required Low
User Interaction None
Scope Changed
Confidentiality High
Integrity None
Availability None
Threat Intelligence
EPSS Exploit Probability
22.0% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available
Weaknesses 1
CWE-532
References 2
- westermo.com https://www.westermo.com/-/media/Files/Cyber-security/westermo_sa_25-08_sensitive_information_in_logging.pdf?rev=40c4e78bd1524f639a89cd1b005e0f23&hash=64987A18FFECA633F23DB11FE5EAFA9A
- westermo.com https://www.westermo.com/uk/support/security-advisories
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.