CVE-2025-41257

Publication date

2026-03-04 22:43:53

Family

sba-research

State

PUBLISHED

Description

Suprema’s BioStar 2 in version 2.9.11.6 allows users to set new password without providing the current one. Exploiting this flaw combined with other vulnerabilities can lead to unauthorized account access and potential system compromise.