CVE-2025-0224

A vulnerability was found in Provision-ISR SH-4050A-2, SH-4100A-2L(MM), SH-8100A-2L(MM), SH-16200A-2(1U), SH-16200A-5(1U) and NVR5-8200PX up to 20241220. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /server.js. The manipulation leads to information disclosure. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Configurations

No configuration.

History

05 Jan 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-05 17:15

Updated : 2025-01-05 17:15


NVD link : CVE-2025-0224

Mitre link : CVE-2025-0224

CVE.ORG link : CVE-2025-0224


JSON object : View

Products Affected

No product.

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-284

Improper Access Control