Critical severity9.8NVD Advisory· Published Sep 2, 2025· Updated Jun 17, 2026
CVE-2025-6519
CVE-2025-6519
Description
E3 Site Supervisor (firmware version < 2.31F01) has a default admin user "ONEDAY" with a daily generated password. An attacker can predictably generate the password for ONEDAY. The oneday user cannot be deleted or modified by any user.
Affected products
2- cpe:2.3:o:copeland:e3_supervisory_controller_firmware:*:*:*:*:*:*:*:*Range: <2.31f01
- Copeland LP/E3 Supervisory Controlv5Range: 0
Patches
Vulnerability mechanics
References
1- www.armis.com/research/frostbyte10/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.