Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 01 Jun 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Waterfall-security
Waterfall-security wf-500 Waterfall-security wf-500 Firmware |
|
| CPEs | cpe:2.3:h:waterfall-security:wf-500:-:*:*:*:*:*:*:* cpe:2.3:o:waterfall-security:wf-500_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Waterfall-security
Waterfall-security wf-500 Waterfall-security wf-500 Firmware |
|
| Metrics |
cvssV3_1
|
Fri, 29 May 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Waterfall
Waterfall wf-500 |
|
| Vendors & Products |
Waterfall
Waterfall wf-500 |
Fri, 29 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 29 May 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Out‑of‑Bounds Read Allowing Remote Code Execution via TX Host Access on Waterfall WF‑500 |
Fri, 29 May 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Nozomi Networks Labs identified a CWE-125: Out-of-bounds Read in Waterfall WF-500 RX Host in version 7.10.0.0 R2601141040 that allows attackers with access to the TX Host to execute code on the RX Host. | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Nozomi
Published:
Updated: 2026-05-29T13:39:01.031Z
Reserved: 2025-04-16T09:53:43.283Z
Link: CVE-2025-41278
Updated: 2026-05-29T13:38:55.875Z
Status : Analyzed
Published: 2026-05-29T12:16:24.293
Modified: 2026-06-01T18:56:23.933
Link: CVE-2025-41278
No data.
OpenCVE Enrichment
Updated: 2026-05-29T15:46:50Z