CVE-2025-25728

Bosscomm IF740 Firmware versions:11001.7078 & v11001.0000 and System versions: 6.25 & 6.00 were discovered to send communications to the update API in plaintext, allowing attackers to access sensitive information via a man-in-the-middle attack.
Configurations

No configuration.

History

19 Mar 2025, 21:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CWE CWE-319
Summary
  • (es) Se descubrió que las versiones de firmware 11001.7078 y v11001.0000 y las versiones del sistema 6.25 y 6.00 de Bosscomm IF740 enviaban comunicaciones a la API de actualización en texto plano, lo que permitía a los atacantes acceder a información confidencial a través de un ataque de intermediario.

28 Feb 2025, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-28 00:15

Updated : 2025-03-19 21:15


NVD link : CVE-2025-25728

Mitre link : CVE-2025-25728

CVE.ORG link : CVE-2025-25728


JSON object : View

Products Affected

No product.

CWE
CWE-319

Cleartext Transmission of Sensitive Information