Endress+Hauser MEAC300-FNADE4 Unencrypted VNC Communication Vulnerability

Vulnerability

A vulnerability exists in the Endress+Hauser MEAC300-FNADE4 product, all firmware versions, where VNC server and client communication is unencrypted. This flaw allows attackers to intercept traffic and access sensitive information.

Impact

Exploitation of this vulnerability could lead to interception of VNC communication, allowing attackers to access sensitive data.

Remediation

Users are advised to update to the latest version of the MEAC300-FNADE4. General security practices should also be applied to minimize network exposure and ensure the device operates in a secure IT environment.

Added: Jul 3, 2025, 12:33 PM
Updated: Jul 3, 2025, 12:33 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
6.2
remediation
0.0
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.