LOW🇵🇱 Wersja polska

CVE-2025-1882

CVSS 2.3v4.0pub. 2025-03-03upd. 2025-03-05

A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been rated as critical. Affected by this issue is some unknown functionality of the component Device Setting Handler. The manipulation leads to improper access control for register interface. The attack needs to be done within the local network. The complexity of an attack is rather high. The exploitation is known to be difficult. It was not possible to identify the current maintainer of the product. It must be assumed that the product is end-of-life.

CVSS Vector
CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • I Drive I11

    HW
    I-Drive
    all versions
  • I Drive I11 Firmware

    OS
    I-Drive
    ≤ 20250227
  • I Drive I12

    HW
    I-Drive
    all versions
  • I Drive I12 Firmware

    OS
    I-Drive
    ≤ 20250227
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2025-1881MEDIUM5.3same product

A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been declared as problematic. Affected...

CVE-2025-1878LOW2.3same product

W systemach i-Drive i11 i i12 do wersji 20250227 odkryto podatność klasyfikowaną jako problematyczną. Dotyczy ...

CVE-2025-1879LOW2.4same product

W i-Drive i11 i i12 do wersji 20250227 odkryto lukę klasyfikowaną jako problematyczną. Problem dotyczy nieznan...

CVE-2025-1880LOW1.0same product

W produkcie i-Drive i11 i i12 do wersji 20250227 odkryto podatność klasyfikowaną jako problematyczną. Dotyczy ...

CVE-2000-0376HIGH10.0same vendor

Buffer overflow in the HTTP proxy server for the i-drive Filo software allows remote attackers to execute arbi...