PT-2025-47631 · Fs · Fs Inc S3150-8T2F

Published

2025-11-20

·

Updated

2025-11-21

·

CVE-2025-25613

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions FS Inc S3150-8T2F 8-Port Gigabit Ethernet L2+ Switch versions prior to 2.2.0D Build 135103
Description The FS Inc S3150-8T2F 8-Port Gigabit Ethernet L2+ Switch transmits cookies containing usernames and passwords in cleartext using base64 encoding during every POST request made to the server for its web-based administrative application. The cookies are sent with each POST request to the server.
Recommendations Update to version 2.2.0D Build 135103 or later.

Exploit

Fix

Cleartext Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2025-25613

Affected Products

Fs Inc S3150-8T2F