CVE-2025-11785

Stack-based buffer overflow vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. In the 'ShowMeterPasswords()' function, there is an unlimited user input that is copied to a fixed-size buffer via 'sprintf()'. The 'GetParameter(meter)' function retrieves the user input, which is directly incorporated into a buffer without size validation. An attacker can provide an excessively large input for the 'meter' parameter.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:circutor:sge-plc1000_firmware:9.0.2:*:*:*:*:*:*:*
cpe:2.3:h:circutor:sge-plc1000:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:circutor:sge-plc50_firmware:9.0.2:*:*:*:*:*:*:*
cpe:2.3:h:circutor:sge-plc50:-:*:*:*:*:*:*:*

History

17 Jun 2026, 08:31

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de desbordamiento de búfer basado en pila en Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. En la función 'ShowMeterPasswords()', existe una entrada de usuario ilimitada que se copia a un búfer de tamaño fijo a través de 'sprintf()'. La función 'GetParameter(meter)' recupera la entrada del usuario, la cual se incorpora directamente en un búfer sin validación de tamaño. Un atacante puede proporcionar una entrada excesivamente grande para el parámetro 'meter'.

03 Dec 2025, 19:13

Type Values Removed Values Added
CPE cpe:2.3:o:circutor:sge-plc50_firmware:9.0.2:*:*:*:*:*:*:*
cpe:2.3:o:circutor:sge-plc1000_firmware:9.0.2:*:*:*:*:*:*:*
cpe:2.3:h:circutor:sge-plc1000:-:*:*:*:*:*:*:*
cpe:2.3:h:circutor:sge-plc50:-:*:*:*:*:*:*:*
References () https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-circutor-products-0 - () https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-circutor-products-0 - Third Party Advisory
First Time Circutor sge-plc50 Firmware
Circutor sge-plc1000 Firmware
Circutor sge-plc50
Circutor
Circutor sge-plc1000
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

02 Dec 2025, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-02 13:15

Updated : 2026-06-17 08:31


NVD link : CVE-2025-11785

Mitre link : CVE-2025-11785

CVE.ORG link : CVE-2025-11785


JSON object : View

Products Affected

circutor

  • sge-plc1000_firmware
  • sge-plc50
  • sge-plc50_firmware
  • sge-plc1000
CWE
CWE-121

Stack-based Buffer Overflow