Incorrect access control in BW Broadcast TX600 (14980), TX300 (32990) (31448), TX150, TX1000, TX30, and TX50 Hardware Version: 2, Software Version: 1.6.0, Control Version: 1.0, AIO Firmware Version: 1.7 allows attackers to access log files and extract session identifiers to execute a session hijacking attack.
Metrics
Affected Vendors & Products
References
History
Tue, 22 Apr 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-284 | |
Metrics |
cvssV3_1
|
Fri, 18 Apr 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Incorrect access control in BW Broadcast TX600 (14980), TX300 (32990) (31448), TX150, TX1000, TX30, and TX50 Hardware Version: 2, Software Version: 1.6.0, Control Version: 1.0, AIO Firmware Version: 1.7 allows attackers to access log files and extract session identifiers to execute a session hijacking attack. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-04-18T00:00:00.000Z
Updated: 2025-04-22T14:14:35.680Z
Reserved: 2025-03-11T00:00:00.000Z
Link: CVE-2025-28233

Updated: 2025-04-22T14:14:31.605Z

Status : Awaiting Analysis
Published: 2025-04-18T18:15:45.307
Modified: 2025-04-22T15:16:11.657
Link: CVE-2025-28233

No data.