CVE-2025-50110

An issue was discovered in the method push.lite.avtech.com.AvtechLib.GetHttpsResponse in AVTECH EagleEyes Lite 2.0.0, the GetHttpsResponse method transmits sensitive information - including internal server URLs, account IDs, passwords, and device tokens - as plaintext query parameters over HTTPS
Configurations

No configuration.

History

15 Sep 2025, 15:22

Type Values Removed Values Added
CWE CWE-598
CWE-319
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8

15 Sep 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-15 14:15

Updated : 2025-09-15 15:22


NVD link : CVE-2025-50110

Mitre link : CVE-2025-50110

CVE.ORG link : CVE-2025-50110


JSON object : View

Products Affected

No product.

CWE
CWE-319

Cleartext Transmission of Sensitive Information

CWE-598

Use of GET Request Method With Sensitive Query Strings