Successful exploitation of the vulnerability could allow an attacker to intercept data and conduct session hijacking on the exposed data as the vulnerable product uses unencrypted HTTP communication, potentially leading to unauthorised access or data tampering.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Jun 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-312 |
Tue, 24 Jun 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 24 Jun 2025 03:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Tue, 24 Jun 2025 02:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Successful exploitation of the vulnerability could allow an attacker to intercept data and conduct session hijacking on the exposed data as the vulnerable product uses unencrypted HTTP communication, potentially leading to unauthorised access or data tampering. | |
Title | Unencrypted HTTP Communication | |
References |
|

Status: PUBLISHED
Assigner: CSA
Published: 2025-06-24T02:10:39.085Z
Updated: 2025-06-25T13:14:07.630Z
Reserved: 2025-05-22T09:41:25.401Z
Link: CVE-2025-48463

Updated: 2025-06-24T16:39:20.376Z

Status : Awaiting Analysis
Published: 2025-06-24T03:15:33.870
Modified: 2025-06-26T18:58:14.280
Link: CVE-2025-48463

No data.