Back to Database
Status published
High
CVE-2025-41654
PEPPERL+FUCHS: Profinet Gateway LB8122A.1.EL – Device is affected by information disclosure via the SNMP protocol
Vulnerability Description
An unauthenticated remote attacker can access information about running processes via the SNMP protocol. The amount of returned data can trigger a reboot by the watchdog.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-41654
Credits & Attribution
No credits recorded in the NVD database.
More from Pepperl+Fuchs
View All →CVE-2025-41655
PEPPERL+FUCHS: Attacker can cause a DoS via URL
High
7.5
CVE-2025-1985
PEPPERL+FUCHS: Profinet Gateway LB8122A.1.EL – Device is affected by XSS vulnerability
Medium
6.1
CVE-2024-6422
Pepperl+Fuchs: OIT Products can be manipulated via unintended Telnet access
Critical
9.8
CVE-2024-6421
Pepperl+Fuchs: Incorrectly configured FTP-Server in OIT Products
High
7.5
CVE-2024-5849
Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows reflected XSS
High
7.1
Affected Vendor
Pepperl+Fuchs
View all reports →Affected Software
Profinet Gateway FB8122A.1.EL, Profinet Gateway LB8122A.1.EL
Vulnerable Versions:
0
Timeline
Official Publish:
May 26th, 2025
Last Modified:
August 22nd, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H