CVE-2025-41687: Weidmueller Ie-Sr-2tx-Wl
Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.
An unauthenticated remote attacker may use a stack based buffer overflow in the u-link Management API to gain full access on the affected devices.
Affected products
- Weidmueller Ie-Sr-2tx-Wl: from V0.0, before V1.49 (fixed in V1.49)
- Weidmueller Ie-Sr-2tx-Wl-4g-Eu: from V0.0, before V1.62 (fixed in V1.62)
- Weidmueller Ie-Sr-2tx-Wl-4g-Us-V: from V0.0, before V1.62 (fixed in V1.62)
Published 2025-07-23. Last modified 2026-06-17.