Security Advisory

CVE-2025-63207

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-11-19 00:00:00
Last updated 2025-11-20 16:06:04
Assigner mitre
State PUBLISHED

Description

The R.V.R Elettronica TEX product (firmware TEXL-000400, Web GUI TLAN-000400) is vulnerable to broken access control due to improper authentication checks on the /_Passwd.html endpoint. An attacker can send an unauthenticated POST request to change the Admin, Operator, and User passwords, resulting in complete system compromise.