CVE-2025-7731
Last modified
CVE-2025-7731 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Cleartext Transmission of Sensitive Information vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to obtain credential information by intercepting SLMP communication messages, and read or write the device values of the product and stop the operations of programs by using the obtained credential information.. EPSS estimates a 0.31% chance of exploitation in the next 30 days.
Description
Cleartext Transmission of Sensitive Information vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to obtain credential information by intercepting SLMP communication messages, and read or write the device values of the product and stop the operations of programs by using the obtained credential information.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-7731?
How severe is CVE-2025-7731?
How do I fix CVE-2025-7731?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-7725The Photos, Files, YouTube, Twitter, Instagram, TikTok, Ecom…7.2
- CVE-2025-7726The The7 theme for WordPress is vulnerable to Stored Cross-S…6.4
- CVE-2025-7727The Gutenverse plugin for WordPress is vulnerable to Stored …6.4
- CVE-2025-7728A vulnerability classified as problematic has been found in …5.4
- CVE-2025-7729A vulnerability classified as problematic was found in Scada…5.4
- CVE-2025-7730The Bold Page Builder plugin for WordPress is vulnerable to …6.4
- CVE-2025-7732The Lazy Load for Videos plugin for WordPress is vulnerable …6.4
- CVE-2025-7733The WP JobHunt plugin for WordPress, used by the JobCareer t…4.3
- CVE-2025-7734An issue has been discovered in GitLab CE/EE affecting all v…5.4
- CVE-2025-7735The Hospital Information System developed by UNIMAX has a SQ…8.7
- CVE-2025-7736GitLab has remediated an issue in GitLab CE/EE affecting all…4.3
- CVE-2025-7737DoS Vulnerability in 10G iSCSI Interface of Hitachi Virtual …8.6
Are you affected by CVE-2025-7731?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
