← Back to browse · API

CVE-2025-11778

Severity
CRITICAL
CVSS
10.0
EPSS
0.00342
Risk score
40.12
CISA KEV
No
PoC
No
Published
2025-12-02
Modified
2025-12-02
First seen
2026-08-07
Aliases
EUVD-2025-200238, GHSA-85HG-FF73-JFW9
Products
SGE-PLC1000 SGE-PLC50:Circutor 9.0.2
Sources
euvd EUVD-2025-200238

Description

Stack-based buffer overflow in Circutor SGE-PLC1000/SGE-PLC50 v0.9.2. This vulnerability allows an attacker to remotely exploit memory corruption through the 'read_packet()' function of the TACACSPLUS implementation.

References