Beveiligingsadvies

CVE-2025-53520

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-08-08 16:09:02
Laatst bijgewerkt 2025-08-08 19:12:44
Toegewezen door icscert
CVSS-score 8.8
Status PUBLISHED

Beschrijving

The affected product allows firmware updates to be downloaded from EG4's website, transferred via USB dongles, or installed through EG4's Monitoring Center (remote, cloud-connected interface) or via a serial connection, and can install these files without integrity checks. The TTComp archive format used for the firmware is unencrypted and can be unpacked and altered without detection.