PatchSiren

Westermo Network Technologies CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Westermo Network Technologies CVE published 2025-09-18

CVE-2025-46418

CVE-2025-46418 is a Westermo WeOS 5 vulnerability that could allow OS command injection through unsafe handling of media definitions. CISA published the advisory on 2025-09-18 and assigned a CVSS 3.1 score of 7.6 (HIGH). The supplied advisory data indicates mitigations are available without a software update.