Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Copeland LP — Vulnerabilities & Security Advisories 10

Browse all 10 CVE security advisories affecting Copeland LP. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Copeland LP, a manufacturer of HVAC and refrigeration components, has 10 CVEs primarily affecting control systems and industrial equipment. Historically, vulnerabilities include remote code execution, cross-site scripting, and privilege escalation, often in web interfaces and firmware. Security characteristics include exposure of industrial control systems to network attacks, with some flaws allowing unauthorized access to critical functions. No major public incidents have been documented, but the presence of multiple RCE vulnerabilities in web-based management interfaces indicates potential for system compromise. The company's products, while not consumer-facing, represent critical infrastructure components with security implications for industrial environments.

CVE ID Title CVSS Severity Published
CVE-2025-52551 Proprietary protocol allows for unauthenticated file operations — E2 Facility Management System CWE-306 9.8AI Critical AI 2025-09-02
CVE-2025-52550 Firmware upgrade packages are unsigned — E3 Supervisory Control CWE-347 4.9AI Medium AI 2025-09-02
CVE-2025-52549 Predictable root linux password generation — E3 Supervisory Control CWE-522 9.8AI Critical AI 2025-09-02
CVE-2025-52548 Enabling SSH and Shellinabox on the vulnerable machine — E3 Supervisory Control CWE-1242 7.2AI High AI 2025-09-02
CVE-2025-52547 DoS to the application services — E3 Supervisory Control CWE-20 7.5AI High AI 2025-09-02
CVE-2025-52546 Stored XSS by uploading a specially crafted floor plan file — E3 Supervisory Control CWE-434 6.1AI Medium AI 2025-09-02
CVE-2025-52545 Privilege escalation in the application services — E3 Supervisory Control CWE-522 9.1AI Critical AI 2025-09-02
CVE-2025-52544 Arbitrary read file from the filesystem — E3 Supervisory Control CWE-20 7.5AI High AI 2025-09-02
CVE-2025-52543 Login to the application services using only the password hash — E3 Supervisory Control CWE-836 9.8AI Critical AI 2025-09-02
CVE-2025-6519 Consistent predictable generation of the password for the default admin user "ONEDAY" to the application services — E3 Supervisory Control CWE-522 9.8AI Critical AI 2025-09-02

This page lists every published CVE security advisory associated with Copeland LP. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.