Medium severity4.0NVD Advisory· Published Dec 2, 2025· Updated Jun 17, 2026
CVE-2025-41743
CVE-2025-41743
Description
Insufficient encryption strength in Sprecher Automation SPRECON-E-C, SPRECON-E-P, and SPRECON-E-T3 allows a local unprivileged attacker to extract data from update images and thus obtain limited information about the architecture and internal processes.
Affected products
7- cpe:2.3:o:sprecher-automation:sprecon-e-c_firmware:*:*:*:*:*:*:*:*Range: <9.0
- cpe:2.3:o:sprecher-automation:sprecon-e-p_firmware:*:*:*:*:*:*:*:*Range: <9.0
- cpe:2.3:o:sprecher-automation:sprecon-e-t3_firmware:*:*:*:*:*:*:*:*Range: <9.0
(expand)+ 3 more
- (no CPE)
- (no CPE)range: 1.0
- (no CPE)range: 1.0
- (no CPE)range: 1.0
Patches
Vulnerability mechanics
References
1- www.sprecher-automation.com/fileadmin/itSecurity/PDF/SPR-2511043_de.pdfnvdVendor Advisory
News mentions
0No linked articles in our index yet.