CVE-2025-27459: Endress MEAC300-FNADE4 Firmware

High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.

The VNC application stores its passwords encrypted within the registry but uses DES for encryption. As DES is broken, the original passwords can be recovered.

Affected products

  • Endress MEAC300-FNADE4 Firmware: any version

Published 2025-07-03. Last modified 2026-06-17.