CVE-2025-10685
Awaiting Analysis
Awaiting Analysis - Queue
Heap-Based Buffer Overflow in Softing smartLink Webserver Modules
Publication date: 2026-03-16
Last updated on: 2026-03-27
Assigner: Softing
Description
Description
Heap-based buffer overflow vulnerability in Softing Industrial Automation GmbH smartLink SW-PN and smartLink SW-HT (Webserver modules) allows overflow buffers.This issue affects:
smartLink SW-PN: through 1.03
smartLink SW-HT: through 1.42
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| softing_industrial_automation_gmbh | smartlink_sw-pn | to 1.03 (inc) |
| softing_industrial_automation_gmbh | smartlink_sw-ht | to 1.42 (inc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-122 | A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc(). |