CVE-2025-48462

MEDIUM

Advantech WISE-4000 Series LAN Firmware - Session Slot Exhaustion DoS

Title source: llm
STIX 2.1

Description

Successful exploitation of the vulnerability could allow an attacker to consume all available session slots and block other users from logging in, thereby preventing legitimate users from gaining access to the product.

References (1)

Core 1

Scores

CVSS v3 4.2
EPSS 0.0008
EPSS Percentile 22.6%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-770
Status published
Products (3)
advantech/wise-4010lan_firmware
advantech/wise-4050lan_firmware
advantech/wise-4060lan_firmware
Published Jun 24, 2025
Tracked Since Feb 18, 2026