CVE-2025-41744

S

precher Automations SPRECON-E series uses default cryptographic keys that allow an unprivileged remote attacker to access all encrypted communications, thereby compromising confidentiality and integrity.

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:sprecher-automation:sprecon-e-c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:sprecher-automation:sprecon-e-c:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:sprecher-automation:sprecon-e-p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:sprecher-automation:sprecon-e-p:*:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:sprecher-automation:sprecon-e-t3_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:sprecher-automation:sprecon-e-t3:*:*:*:*:*:*:*:*

History

23 Feb 2026, 17:15

Type Values Removed Values Added
CPE cpe:2.3:o:sprecher-automation:sprecon-e-t3_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:sprecher-automation:sprecon-e-c:*:*:*:*:*:*:*:*
cpe:2.3:h:sprecher-automation:sprecon-e-t3:*:*:*:*:*:*:*:*
cpe:2.3:o:sprecher-automation:sprecon-e-p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:sprecher-automation:sprecon-e-p:*:*:*:*:*:*:*:*
cpe:2.3:o:sprecher-automation:sprecon-e-c_firmware:-:*:*:*:*:*:*:*
First Time Sprecher-automation sprecon-e-p Firmware
Sprecher-automation sprecon-e-c Firmware
Sprecher-automation sprecon-e-t3
Sprecher-automation sprecon-e-t3 Firmware
Sprecher-automation sprecon-e-c
Sprecher-automation sprecon-e-p
Sprecher-automation
References () https://www.sprecher-automation.com/fileadmin/itSecurity/PDF/SPR-2511043_de.pdf - () https://www.sprecher-automation.com/fileadmin/itSecurity/PDF/SPR-2511043_de.pdf - Vendor Advisory

02 Dec 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-02 11:15

Updated : 2026-02-23 17:15


NVD link : CVE-2025-41744

Mitre link : CVE-2025-41744

CVE.ORG link : CVE-2025-41744


JSON object : View

CWE
CWE-1394

Use of Default Cryptographic Key