CVE-2025-28231

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Apr 18, 2025
Updated: Apr 22, 2025
CWE ID 284

Summary

CVE-2025-28231 is a critical access control vulnerability affecting Itel Electronics IP Stream version 1.7.0.6. This issue grants unauthorized attackers the ability to execute arbitrary commands with Administrator privileges, posing a significant risk to affected systems. This flaw arises from inadequate access control measures, enabling potential malicious actors to bypass security restrictions and gain elevated access. It is essential for organizations using this software to apply the necessary patches or updates promptly to mitigate the risk of exploitation. Failure to address this vulnerability could result in serious security consequences, including data theft, system compromise, and unauthorized modifications.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share