Back to CVE List

CVE-2025-64305

MEDIUM SEVERITY

CVSS Score & Metrics

Base Score
6.5 / 10
Vector String
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Vulnerability Description

MicroServer copies parts of the system firmware to an unencrypted external SD card on boot, which contains user and vendor secrets. An attacker can utilize these plaintext secrets to modify the vendor firmware, or gain admin access to the web portal.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-313
Source
NVD

External References

Discussion (0)

Add Comment

No comments yet. Be the first!