Skip to main content

CVE-2025-6525: Improper Authorization in 70mai 1S

Medium
VulnerabilityCVE-2025-6525cvecve-2025-6525
Published: Mon Jun 23 2025 (06/23/2025, 21:31:05 UTC)
Source: CVE Database V5
Vendor/Project: 70mai
Product: 1S

Description

A vulnerability classified as problematic was found in 70mai 1S up to 20250611. This vulnerability affects unknown code of the file /cgi-bin/Config.cgi?action=set of the component Configuration Handler. The manipulation leads to improper authorization. The attack needs to be approached within the local network. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Technical Details

Data Version
5.1
Assigner Short Name
VulDB
Date Reserved
2025-06-23T14:11:15.250Z
Cvss Version
4.0
State
PUBLISHED

Threat ID: 6859c9a8dec26fc862d89b1b

Added to database: 6/23/2025, 9:39:52 PM

Last updated: 6/23/2025, 9:39:52 PM

Views: 1

Actions

Please log in to the Console to use AI analysis features.

Need enhanced features?

Contact root@offseq.com for Pro access with improved analysis and higher rate limits.

Latest Threats