CVE-2026-25819

7.5

HMS Networks · Ewon Flexy and Cosy+

HMS Networks Ewon Flexy and Cosy+ devices are vulnerable to an unauthenticated Denial of Service attack via crafted HTTP requests that trigger a device reboot.

Executive summary

Unauthenticated attackers can trigger a persistent Denial of Service condition on HMS Networks Ewon Flexy and Cosy+ industrial gateways by sending specially crafted HTTP requests to the device GUI.

Vulnerability

This vulnerability involves a lack of input validation within the device GUI, allowing an unauthenticated remote attacker to cause a system reboot through a crafted HTTP request.

Business impact

The ability for an unauthenticated actor to force a device reboot directly impacts operational continuity in industrial environments. Given the CVSS score of 7.5, the vulnerability is classified as High severity because it allows for easy, repeatable disruption of critical remote connectivity gateways without requiring prior system access or user credentials.

Remediation

Immediate Action: Update all affected Ewon Flexy and Cosy+ firmware to the versions specified by the vendor as containing the fix (15.0s4, 22.1s6, or 23.0s3 respectively).

Proactive Monitoring: Monitor network traffic for anomalous HTTP requests directed at the GUI of industrial gateways and review system logs for frequent, unauthorized reboot events.

Compensating Controls: Restrict network access to the device GUI to authorized management subnets only via firewall rules to prevent unauthenticated remote access.

Exploitation status

Public Exploit Available: No.

Analyst recommendation

This vulnerability poses a significant risk to the availability of industrial remote access infrastructure. Administrators should prioritize the deployment of the vendor provided firmware updates to eliminate the potential for unauthorized reboots and ensure the stability of the industrial control environment.

More HMS Networks CVEs

Sources