Fiche vulnérabilité
CVE-2025-2865 : faille moyenne arteche satech bcu firmware (CVSS 6.1)
Description
SaTECH BCU, in its firmware version 2.1.3, could allow XSS attacks and other malicious resources to be stored on the web server. An attacker with some knowledge of the web application could send a malicious request to the victim users. Through this request, the victims would interpret the code (resources) stored on another malicious website owned by the attacker.
En bref
- Sévérité
- Moyenne (CVSS 6.1)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 28 mars 2025
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- arteche satech bcu firmware