CVE-2025-28237
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Apr 18, 2025
Updated: Apr 22, 2025
CWE ID 269
Summary
CVE-2025-28237 is a privilege escalation vulnerability affecting WorldCast Systems ECRESO FM/DAB/TV Transmitter version 1.10.1. An authenticated attacker can exploit this issue by utilizing a specially crafted JSON payload, thereby gaining elevated privileges and potentially taking control of the transmitter system. This vulnerability poses a significant risk to the security and functionality of broadcasting infrastructure. It is imperative that affected organizations apply the necessary patches to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.