{"id":"CVE-2025-41743","details":"Insufficient encryption strength in Sprecher Automation SPRECON-E-C, SPRECON-E-P, and SPRECON-E-T3 allows a local unprivileged attacker to extract data from update images and thus obtain limited information about the architecture and internal processes.","modified":"2026-03-13T03:10:37.828689Z","published":"2025-12-02T11:15:51.493Z","references":[{"type":"ADVISORY","url":"https://www.sprecher-automation.com/fileadmin/itSecurity/PDF/SPR-2511043_de.pdf"}],"affected":[{"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-41743.json","unresolved_ranges":[{"events":[{"introduced":"0"},{"fixed":"9.0"}]},{"events":[{"introduced":"0"},{"fixed":"9.0"}]},{"events":[{"introduced":"0"},{"fixed":"9.0"}]}]}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"}]}