Back to Database
Status published
Critical
CVE-2025-52551
Proprietary protocol allows for unauthenticated file operations
Vulnerability Description
E2 Facility Management Systems use a proprietary protocol that allows for unauthenticated file operations on any file in the file system.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-52551
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Armis Labs
References
More from Copeland LP
View All →CVE-2025-6519
Consistent predictable generation of the password for the default admin user "ONEDAY" to the application services
Critical
9.3
CVE-2025-52550
Firmware upgrade packages are unsigned
High
8.6
CVE-2025-52549
Predictable root linux password generation
Critical
9.2
CVE-2025-52548
Enabling SSH and Shellinabox on the vulnerable machine
Medium
6.9
CVE-2025-52547
DoS to the application services
High
8.7
Affected Vendor
Copeland LP
View all reports →Affected Software
E2 Facility Management System
Vulnerable Versions:
0
Timeline
Official Publish:
September 2nd, 2025
Last Modified:
September 2nd, 2025
Added to House:
July 22nd, 2026