PT-2025-49109 · Waveshare+1 · Rs232/485 To Wifi Eth+1
CVE-2025-63362
·
Publicado
2025-12-04
·
Atualizado
2025-12-04
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Waveshare RS232/485 TO WIFI ETH (B) Serial to Ethernet/Wi-Fi Gateway Firmware version 3.1.1.0
Description
The webpage component, version V7.04T.07.002880.0301, allows attackers to set the Administrator username and password to blank values, bypassing authentication. The hardware version is 4.3.2.1.
Recommendations
Apply a fix to prevent setting blank values for the Administrator username and password.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Rs232/485 To Wifi Eth
V7.04T.07.002880.0301