Beveiligingsadvies

CVE-2025-63207

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-11-19 00:00:00
Laatst bijgewerkt 2025-11-20 16:06:04
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

The R.V.R Elettronica TEX product (firmware TEXL-000400, Web GUI TLAN-000400) is vulnerable to broken access control due to improper authentication checks on the /_Passwd.html endpoint. An attacker can send an unauthenticated POST request to change the Admin, Operator, and User passwords, resulting in complete system compromise.