MicroSec discovers CVE-2025-9495 in Carrier HVAC vitogate 300

View profile for Souvik Kandar

IoT & OT Vulnerability Researcher | 28+ CVEs | Global Recognition (CISA, INL)

Thrilled to share a significant security finding! We've recently been credited with CVE-2025-9495, an authentication bypass vulnerability affecting Carrier HVAC 's vitogate 300, as detailed in the latest CISA advisory : https://lnkd.in/grc55CgF This discovery highlights the critical importance of continuous security research and collaboration in safeguarding our digital infrastructure. At MicroSec, we're committed to contributing to a more secure cyberspace. A huge thank you to Cybersecurity and Infrastructure Security Agency for their swift advisory and to the team at Carrier HVAC for their collaboration in addressing this. Special thanks to the reconnaissance insights provided by platforms like Censys , Modat and Shodan for enabling such discoveries. 🔒 If you want to strengthen the cyber resilience of your infrastructure against such ICS/OT vulnerabilities, connect with us: 📩 info@usec.io | 🌐 www.microsec.io Vishram Mishra Shashank N. Navil Joijode MicroSec #CyberSecurity #VulnerabilityResearch #CVE #RouterSecurity #InfoSec #Microsec

Abhay Srivastava

Cybersecurity Intern @Microsec | Pre final Year Student | TryHackMe Top 2% | ISC2 Candidate

1mo

Congratulations sir🥳

Jana Tom

IP Threat Intel | IP Blocking | EDL Blocklist Management | Research of Mass Exploitation and Recon | Fingerprinting | Cyber Deception | ellio.tech

1mo

Congrats, great catch! 👍

See more comments

To view or add a comment, sign in

Explore content categories