Incorrect access control in the realtime.cgi endpoint of Deep Sea Electronics devices DSE855 v1.1.0 to v1.1.26 allows attackers to gain access to the admin panel and complete control of the device.
References
Configurations
No configuration.
History
31 Oct 2025, 20:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-200 CWE-284 |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 10.0 |
31 Oct 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-31 16:15
Updated : 2025-10-31 20:15
NVD link : CVE-2025-29270
Mitre link : CVE-2025-29270
CVE.ORG link : CVE-2025-29270
JSON object : View
Products Affected
No product.
