PT-2025-16128 · Subnet Solutions · Subnet Solutions Powersystem Center

Published

2025-04-11

·

Updated

2025-04-11

·

CVE-2025-31354

CVSS v3.1

4.3

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions: Subnet Solutions PowerSYSTEM Center (affected versions not specified)
Description: The issue arises when an EC certificate with crafted F2m parameters is imported, affecting the SMTPS notification service. This can lead to excessive CPU consumption during the evaluation of the curve parameters.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2025-31354

Affected Products

Subnet Solutions Powersystem Center