Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-21608

Опубликовано: 18 фев. 2025
Источник: nvd
CVSS3: 5.3
EPSS Низкий

Описание

Meshtastic is an open source mesh networking solution. In affected firmware versions crafted packets over MQTT are able to appear as a DM in client to a node even though they were not decoded with PKC. This issue has been addressed in version 2.5.19 and all users are advised to upgrade. There are no known workarounds for this vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:meshtastic:meshtastic_firmware:*:*:*:*:*:*:*:*
Версия от 2.5.0 (включая) до 2.5.19 (исключая)

EPSS

Процентиль: 22%
0.00073
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-668

EPSS

Процентиль: 22%
0.00073
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-668