CVE-2025-54496
Fuji Electric Monitouch V-SFT-6 Heap-based Buffer Overflow
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 8.4EPSS 0.2%KEV nãoPoC —Patch —
Lifecycle
Nov 04, 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A maliciously crafted project file may cause a heap-based buffer
overflow in
Fuji Electric Monitouch V-SFT-6, which may allow the attacker to execute arbitrary code.
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
Fuji Electric · Monitouch V-SFT-6Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://felib.fujielectric.co.jp/en/document_search?tab=software&document1%5B1%5D=M10009&document2%5B1%5D=M20104&product1%5B1%5D=P10003&product2%5B1%5D=P20023&product3%5B1%5D=P30623&product4%5B1%5D=S11133&discontinued%5B1%5D=0&count=20&sort=en_title&page=1®ion=en-glbhttps://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-308-01.jsonhttps://www.cisa.gov/news-events/ics-advisories/icsa-25-308-01