Beveiligingsadvies

CVE-2025-2861

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-28 13:11:29
Laatst bijgewerkt 2025-04-03 12:58:35
Toegewezen door INCIBE
CVSS-score 6.9
Status PUBLISHED

Beschrijving

SaTECH BCU in its firmware version 2.1.3 uses the HTTP protocol. The use of the HTTP protocol for web browsing has the problem that information is exchanged in unencrypted text. Since sensitive data such as credentials are exchanged, an attacker could obtain them and log in legitimately.