Use of Hard-coded Credentials
CVE:
CVE-2025-41722
Product: Sauter / modulo 6 devices modu680-AS
Severity: High 7.5
Published: 22.10.2025
The wsc server uses a hard-coded certificate to check the authenticity of SOAP messages. An unauthenticated remote attacker can extract private keys from the Software of the affected devices.