PT-2025-47031 · Brightpick · Brightpick Mission Control

CVE-2025-64309

·

Published

2025-11-14

·

Updated

2026-06-25

CVSS v3.1

7.4

High

VectorAV:A/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Brightpick Mission Control (affected versions not specified)
Description Brightpick Mission Control discloses device telemetry, configuration, and credential information via WebSocket traffic to unauthenticated users connecting to a specific URL. The URL can be discovered through basic network scanning techniques.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-64309

Affected Products

Brightpick Mission Control