CVE-2025-2859 Information

Description

An attacker with access to the network where the vulnerable device is located could capture traffic and obtain cookies from the user allowing them to steal a user’s active session and make changes to the device via the web depending on the privileges obtained by the user.

Reference

https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-arteches-satech-bcu

Share on: