Description

A denial of service vulnerability exists in the Modbus RTU over TCP functionality of Socomec DIRIS Digiware M-70 1.6.9. A specially crafted network packet can lead to denial of service and weaken credentials resulting in default documented credentials being applied to the device. An attacker can send an unauthenticated packet to trigger this vulnerability.

INFO

Published Date :

2025-12-01T15:25:28.257Z

Last Modified :

2025-12-01T20:20:41.234Z

Source :

talos
AFFECTED PRODUCTS

The following products are affected by CVE-2025-20085 vulnerability.

Vendors Products
Socomec
  • Diris M-70
  • Diris M-70 Firmware

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact