Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-26409

Опубликовано: 11 фев. 2025
Источник: nvd
CVSS3: 6.8
EPSS Низкий

Описание

A serial interface can be accessed with physical access to the PCB of Wattsense Bridge devices. After connecting to the interface, access to the bootloader is possible, as well as a Linux login prompt. The bootloader access can be used to gain a root shell on the device. This issue is fixed in recent firmware versions BSP >= 6.4.1.

EPSS

Процентиль: 21%
0.0007
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-1191
CWE-1299

Связанные уязвимости

CVSS3: 6.8
github
12 месяцев назад

A serial interface can be accessed with physical access to the PCB of Wattsense Bridge devices. After connecting to the interface, access to the bootloader is possible, as well as a Linux login prompt. The bootloader access can be used to gain a root shell on the device. This issue is fixed in recent firmware versions BSP >= 6.4.1.

EPSS

Процентиль: 21%
0.0007
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-1191
CWE-1299