SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2025-11698

CRITICAL · CVSS 9.2 EPSS 0.30%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

The boot firmware of 5380/5480/5580 controllers prior to version 1.072 is vulnerable to a denial-of-service attack, which may enable an attacker to write invalid file data to the device. This can lead to a major non-recoverable fault (MNRF), rendering the controller inoperable. Organizations using these controllers should prioritize updating their firmware to mitigate this risk.

CVE
CVE-2025-11698
Severity
CRITICAL
CVSS
9.2
EPSS
0.30%

Original NVD Description

A denial-of-service issue exists in 5380/5480/5580 controllers boot firmware lower than version 1.072. This vulnerability could potentially allow a malicious user to write invalid file data to the controller, causing the device to enter a major non-recoverable fault (MNRF).