📦 Diris M 70 Firmware

by Socomec

🔍 What is Diris M 70 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-54850

HIGH CVSS 7.5 Dec 1, 2025

This vulnerability allows unauthenticated attackers to cause denial of service on Socomec DIRIS Digiware M-70 devices by sending a specific sequence of Modbus messages. Attackers can disrupt device fu...

CVE-2025-55221

HIGH CVSS 8.6 Dec 1, 2025

An unauthenticated denial of service vulnerability exists in Socomec DIRIS Digiware M-70 devices running version 1.6.9. Attackers can send specially crafted Modbus TCP packets to port 502 to crash the...

CVE-2025-55222

HIGH CVSS 8.6 Dec 1, 2025

An unauthenticated denial-of-service vulnerability exists in Socomec DIRIS Digiware M-70 devices running version 1.6.9. Attackers can send specially crafted Modbus RTU over TCP packets to port 503 to ...

CVE-2025-54851

HIGH CVSS 7.5 Dec 1, 2025

This vulnerability allows unauthenticated attackers to cause denial of service on Socomec DIRIS Digiware M-70 devices by sending a specially crafted Modbus TCP message. The device becomes unresponsive...

CVE-2025-23417

HIGH CVSS 8.6 Dec 1, 2025

An unauthenticated denial-of-service vulnerability exists in the Modbus RTU over TCP functionality of Socomec DIRIS Digiware M-70 devices. Attackers can send specially crafted network packets to crash...

CVE-2025-26858

HIGH CVSS 8.6 Dec 1, 2025

A buffer overflow vulnerability in the Modbus TCP functionality of Socomec DIRIS Digiware M-70 version 1.6.9 allows unauthenticated attackers to send specially crafted network packets, potentially cau...

CVE-2025-20085

HIGH CVSS 7.2 Dec 1, 2025

An unauthenticated denial-of-service vulnerability in Socomec DIRIS Digiware M-70's Modbus RTU over TCP functionality allows attackers to crash the device and force it to revert to default documented ...

CVE-2024-49572

HIGH CVSS 7.2 Dec 1, 2025

An unauthenticated denial-of-service vulnerability in Socomec DIRIS Digiware M-70's Modbus TCP functionality allows attackers to send specially crafted packets that can crash the device and reset cred...

CVE-2024-53684

HIGH CVSS 7.5 Dec 1, 2025

A CSRF vulnerability in Socomec DIRIS Digiware M-70's WEBVIEW-M functionality allows attackers to craft malicious webpages that trick authenticated users into performing unauthorized actions. This aff...

CVE-2024-48882

HIGH CVSS 8.6 Dec 1, 2025

An unauthenticated denial-of-service vulnerability exists in the Modbus TCP functionality of Socomec DIRIS Digiware M-70 devices. Attackers can send specially crafted network packets to crash the devi...

CVE-2024-48894

MEDIUM CVSS 5.9 Dec 1, 2025

This CVE describes a cleartext transmission vulnerability in Socomec DIRIS Digiware M-70's WEBVIEW-M functionality, allowing attackers to intercept unencrypted HTTP traffic and potentially disclose se...