Back to Database
Status published
Critical
CVE-2025-3200
Com-Server Exposed via Weak TLS
Vulnerability Description
An unauthenticated remote attacker could exploit the used, insecure TLS 1.0 and TLS 1.1 protocols to intercept and manipulate encrypted communications between the Com-Server and connected systems.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-3200
Credits & Attribution
No credits recorded in the NVD database.
More from Wiesemann & Theis
View All →CVE-2025-41689
Wiesemann & Theis: Motherbox 3 allows unauthenticated read-only DB access
High
7.5
CVE-2025-3020
Wiesemann & Theis: Multiple W&T Products are vulnerable to cross-site-scripting
Medium
5.4
CVE-2022-4098
Wiesemann & Theis: Multiple products prone to missing authentication through spoofing
High
8
CVE-2022-42787
Wiesemann & Theis: Small number space for allocating session id in Com-Server family
High
8.8
CVE-2022-42786
Wiesemann & Theis: XSS vulnerability in web interface of the Com-Server family
Medium
5.4
Affected Vendor
Wiesemann & Theis
View all reports →Affected Software
Com-Server++, Com-Server PoE 3x Isolated, Com-Server 20mA, Com-Server OEM, Com-Server UL
Vulnerable Versions:
0.0.0
Timeline
Official Publish:
April 28th, 2025
Last Modified:
April 28th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N