LOW🇵🇱 Wersja polska

CVE-2025-1880

CVSS 1.0v4.0pub. 2025-03-03upd. 2025-03-05

A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been classified as problematic. Affected is an unknown function of the component Device Pairing. The manipulation leads to authentication bypass by primary weakness. It is possible to launch the attack on the physical device. The complexity of an attack is rather high. The exploitability is told to be difficult. It was not possible to identify the current maintainer of the product. It must be assumed that the product is end-of-life.

CVSS Vector
CVSS:4.0/AV:P/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • I Drive I11

    HW
    I-Drive
    all versions
  • I Drive I11 Firmware

    OS
    I-Drive
    ≤ 20250227
  • I Drive I12

    HW
    I-Drive
    all versions
  • I Drive I12 Firmware

    OS
    I-Drive
    ≤ 20250227
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Auth Bypass
CWE
References

Related vulnerabilities

CVE-2025-1881MEDIUM5.3same product

A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been declared as problematic. Affected...

CVE-2025-1878LOW2.3same product

W systemach i-Drive i11 i i12 do wersji 20250227 odkryto podatność klasyfikowaną jako problematyczną. Dotyczy ...

CVE-2025-1879LOW2.4same product

W i-Drive i11 i i12 do wersji 20250227 odkryto lukę klasyfikowaną jako problematyczną. Problem dotyczy nieznan...

CVE-2025-1882LOW2.3same product

Odkryto podatność w i-Drive i11 i i12 do wersji 20250227, ocenioną jako krytyczna. Problem dotyczy nieznanej f...

CVE-2000-0376HIGH10.0same vendor

Buffer overflow in the HTTP proxy server for the i-drive Filo software allows remote attackers to execute arbi...