CVE-2025-29270

Incorrect access control in the realtime.cgi endpoint of Deep Sea Electronics devices DSE855 v1.1.0 to v1.1.26 allows attackers to gain access to the admin panel and complete control of the device.
Configurations

No configuration.

History

31 Oct 2025, 20:15

Type Values Removed Values Added
CWE CWE-200
CWE-284
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 10.0

31 Oct 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-31 16:15

Updated : 2025-10-31 20:15


NVD link : CVE-2025-29270

Mitre link : CVE-2025-29270

CVE.ORG link : CVE-2025-29270


JSON object : View

Products Affected

No product.

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-284

Improper Access Control