logo

Fire detection system been pwned? You’re not going to sea

ID: ca44e0d6-273c-567c-bbe3-c7ab954a37ba

STIX ID: report--ca44e0d6-273c-567c-bbe3-c7ab954a37ba

Feed Name: Pen Test Partners Blog

Threat Score

Date Published: 2025-05-30

Date Updated: 2026-03-24

Author: Joe Bursell

...
...

Researchers report two critical vulnerabilities in Consilium Salwico CS5000 fire panels—CVE-2025-46352 (default high-privilege SSH account) and CVE-2025-41438 (hardcoded, non-changeable VNC password)—that enable remote OS-level and UI control, potentially disabling fire detection and causing regulatory non-compliance; after attempts to disclose since 2022, Consilium initially refused to patch legacy systems predating IACS UR E27 but later issued a note promising an upgrade at the next scheduled service, and the report advises isolating panels, restricting protocols (e.g., limiting SSH/SCP and VNC), hardening connected SMS components, and preparing operational contingency procedures.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.