High severity7.6NVD Advisory· Published Jul 3, 2025· Updated Jun 17, 2026
CVE-2025-27460
CVE-2025-27460
Description
The hard drives of the device are not encrypted using a full volume encryption feature such as BitLocker. This allows an attacker with physical access to the device to use an alternative operating system to interact with the hard drives, completely circumventing the Windows login. The attacker can read from and write to all files on the hard drives.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Endress+Hauser/Endress+Hauser MEAC300-FNADE4v5Range: vers:all/*
- cpe:2.3:o:endress:meac300-fnade4_firmware:*:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
6- sick.com/psirtnvdVendor Advisory
- www.sick.com/.well-known/csaf/white/2025/sca-2025-0008.jsonnvdVendor Advisory
- www.sick.com/.well-known/csaf/white/2025/sca-2025-0008.pdfnvdVendor Advisory
- www.cisa.gov/resources-tools/resources/ics-recommended-practicesnvdUS Government Resource
- www.endress.comnvdProduct
- www.first.org/cvss/calculator/3.1nvdNot Applicable
News mentions
0No linked articles in our index yet.