📦 E3 Supervisory Controller Firmware

by Copeland

🔍 What is E3 Supervisory Controller Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-6519

CRITICAL CVSS 9.8 Sep 2, 2025

CVE-2025-6519 allows attackers to predictably generate the password for the default 'ONEDAY' admin account in E3 Site Supervisor firmware, granting administrative access. This affects all systems runn...

CVE-2025-52549

CRITICAL CVSS 9.8 Sep 2, 2025

CVE-2025-52549 allows attackers to predict the root Linux password on vulnerable E3 Site Supervisor Control devices by analyzing device parameters. This enables complete system compromise of affected ...

CVE-2025-52547

HIGH CVSS 7.5 Sep 2, 2025

E3 Site Supervisor Control firmware versions below 2.31F01 contain an API endpoint with insufficient input validation, allowing attackers to send crafted requests that crash application services. This...

CVE-2025-52543

HIGH CVSS 7.5 Sep 2, 2025

This vulnerability allows attackers to authenticate to E3 Site Supervisor Control systems by obtaining only password hashes, bypassing the need for actual passwords. It affects systems running firmwar...

CVE-2025-52545

HIGH CVSS 7.5 Sep 2, 2025

CVE-2025-52545 allows attackers to retrieve all usernames and password hashes via an API call in the RCI service of E3 Site Supervisor Control. This affects systems running firmware versions below 2.3...