CVE-2025-14672: GMG137 SNAP7-RS

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

A flaw has been found in gmg137 snap7-rs up to 1.142.1. This impacts the function TSnap7MicroClient::opWriteArea of the file s7_micro_client.cpp. Executing a manipulation can lead to heap-based buffer overflow. It is possible to launch the attack remotely. The exploit has been published and may be used.

Affected products

  • GMG137 SNAP7-RS: up to and including 1.142.1

Published 2025-12-14. Last modified 2026-09-28.