CVE Database
/

CVE-2025-23406

Back to search

CVE-2025-23406

Published: Feb 14, 2025

Modified: Feb 14, 2025

PUBLISHED

CVSS v3.0

5.3

MEDIUM

Description

Out-of-bounds read vulnerability caused by improper checking of TCP MSS option values exists in Cente middleware TCP/IP Network Series, which may lead to processing a specially crafted packet to cause the affected product crashed.

VendorProductVersions

DMG MORI Digital Co., LTD. and NXTech Co., Ltd.

Cente TCP/IPv4

affected
Ver.1.51 and earlier

DMG MORI Digital Co., LTD. and NXTech Co., Ltd.

Cente TCP/IPv4 SNMPv2

affected
Ver.2.30 and earlier

DMG MORI Digital Co., LTD. and NXTech Co., Ltd.

Cente TCP/IPv4 SNMPv3

affected
Ver.2.30 and earlier

DMG MORI Digital Co., LTD. and NXTech Co., Ltd.

Cente IPv6

affected
Ver.1.60 and earlier

DMG MORI Digital Co., LTD. and NXTech Co., Ltd.

Cente IPv6 SNMPv2

affected
Ver.2.30 and earlier

DMG MORI Digital Co., LTD. and NXTech Co., Ltd.

Cente IPv6 SNMPv3

affected
Ver.2.30 and earlier

Weaknesses (CWE)

CVSS v3.0 Details

CVSS v3.0 Vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

None

Availability

Low

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now