CISA 경고: Güralp FMUS 지진 장치의 치명적 결함 (CVE-2025-8286)
7월 31, 2025 • César Daniel Barreto

CISA published industrial control system advisory ICSA-25-212-01 on July 31, 2025, warning of a critical vulnerability in Güralp Systems FMUS-series seismic monitoring devices. Tracked as CVE-2025-8286 and rated CVSS v3.1 9.8 (CVSS v4.0 9.3), the flaw is a textbook case of missing authentication for a critical function (CWE-306).
An open door over Telnet
The affected devices expose an unauthenticated Telnet-based command-line interface. Any attacker who can reach that open port over the network can connect without credentials and take privileged control — modifying hardware configuration, manipulating or corrupting the seismic data the instruments record, or triggering a full factory reset. Because the flaw is remotely exploitable with low complexity and requires no privileges or user interaction, it is trivial to abuse once the device is reachable.
Scope and vendor response
CISA lists all versions of the FMUS series as affected, and a later revision of the advisory expanded coverage to the Güralp MIN-series digitizers as well. The vulnerability was reported to CISA by Souvik Kandar of MicroSec. As of publication, Güralp had not confirmed an official firmware fix and did not respond to CISA’s coordination attempts, so operators cannot simply patch their way out.
How to reduce the risk
Seismic monitoring feeds early-warning and research systems, so data integrity matters as much as availability — a tampered device could inject false readings or go dark. CISA’s guidance is defensive and network-focused: ensure these devices are never reachable from the internet, place them behind firewalls and isolate them from business networks, and use up-to-date VPNs or jump hosts for any remote access. Operators should audit whether any FMUS or MIN unit is exposing Telnet and lock that access down immediately.

세자르 다니엘 바레토
세자르 다니엘 바레토는 존경받는 사이버 보안 작가이자 전문가로, 복잡한 사이버 보안에 대한 심도 있는 지식과 복잡한 사이버 보안 주제를 단순화하는 능력으로 유명합니다. 네트워크 보안 및 데이터 보호에 대한 폭넓은 경험을 바탕으로 보안 및 데이터 보호 분야에서 폭넓은 경험을 쌓은 그는 정기적으로 최신 사이버 보안 트렌드에 대한 사이버 보안 트렌드에 대한 통찰력 있는 기사와 분석을 정기적으로 제공하고 있습니다.