LOW🇬🇧 English

CVE-2025-1880

CVSS 1.0v4.0pub. 2025-03-03upd. 2025-03-05

W produkcie i-Drive i11 i i12 do wersji 20250227 odkryto podatność klasyfikowaną jako problematyczną. Dotyczy ona nieznanej funkcji komponentu Device Pairing i umożliwia authentication bypass przez podstawową słabość. Atak wymaga dostępu fizycznego do urządzenia i charakteryzuje się wysoką złożonością oraz trudnością w eksploitacji. Nie udało się zidentyfikować obecnego opiekuna produktu, dlatego należy przyjąć, że produkt osiągnął koniec cyklu życia.

Pokaż oryginał (EN)

A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been classified as problematic. Affected is an unknown function of the component Device Pairing. The manipulation leads to authentication bypass by primary weakness. It is possible to launch the attack on the physical device. The complexity of an attack is rather high. The exploitability is told to be difficult. It was not possible to identify the current maintainer of the product. It must be assumed that the product is end-of-life.

CVSS Vector
CVSS:4.0/AV:P/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • I Drive I11

    HW
    I-Drive
    wszystkie wersje
  • I Drive I11 Firmware

    OS
    I-Drive
    ≤ 20250227
  • I Drive I12

    HW
    I-Drive
    wszystkie wersje
  • I Drive I12 Firmware

    OS
    I-Drive
    ≤ 20250227
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Tagi
Auth Bypass
CWE
Referencje

Powiązane podatności

CVE-2025-1881MEDIUM5.3ten sam produkt

A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been declared as problematic. Affected...

CVE-2025-1878LOW2.3ten sam produkt

W systemach i-Drive i11 i i12 do wersji 20250227 odkryto podatność klasyfikowaną jako problematyczną. Dotyczy ...

CVE-2025-1879LOW2.4ten sam produkt

W i-Drive i11 i i12 do wersji 20250227 odkryto lukę klasyfikowaną jako problematyczną. Problem dotyczy nieznan...

CVE-2025-1882LOW2.3ten sam produkt

Odkryto podatność w i-Drive i11 i i12 do wersji 20250227, ocenioną jako krytyczna. Problem dotyczy nieznanej f...

CVE-2000-0376HIGH10.0ten sam vendor

Buffer overflow in the HTTP proxy server for the i-drive Filo software allows remote attackers to execute arbi...