CVE-2025-30512

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Apr 15, 2025
Updated: Apr 16, 2025
CWE ID 15

Summary

CVE-2025-30512 is a vulnerability that allows unauthenticated attackers to send configuration settings to a targeted device. Successful exploitation of this vulnerability could enable remote physical actions, such as turning the device on or off. Attackers can take advantage of this issue without needing any credentials or authorization, making it a significant security risk. The impact of this vulnerability goes beyond just data breaches, as it can potentially put users and their physical environments at risk. It is crucial for device manufacturers and users to apply the necessary patches to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share