9.1
CVE-2025-28232
- EPSS 0.19%
- Veröffentlicht 18.04.2025 00:00:00
- Zuletzt bearbeitet 09.07.2025 17:17:09
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Incorrect access control in the HOME.php endpoint of JMBroadcast JMB0150 Firmware v1.0 allows attackers to access the Admin panel without authentication.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jmbroadcast ≫ Jmb0150 Firmware Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.19% | 0.409 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 9.1 | 3.9 | 5.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.