CVE-2025-26408

The JTAG interface of Wattsense Bridge devices can be accessed with physical access to the PCB. After connecting to the interface, full access to the device is possible. This enables an attacker to extract information, modify and debug the device's firmware. All known versions are affected.
Configurations

No configuration.

History

22 Mar 2025, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1

18 Feb 2025, 18:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.1
v2 : unknown
v3 : unknown
Summary
  • (es) Se puede acceder a la interfaz JTAG de los dispositivos Wattsense Bridge mediante acceso físico a la PCB. Después de conectarse a la interfaz, es posible acceder por completo al dispositivo. Esto permite a un atacante extraer información, modificar y depurar el firmware del dispositivo. Todas las versiones conocidas se ven afectadas.

11 Feb 2025, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1

11 Feb 2025, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-11 10:15

Updated : 2025-03-22 15:15


NVD link : CVE-2025-26408

Mitre link : CVE-2025-26408

CVE.ORG link : CVE-2025-26408


JSON object : View

Products Affected

No product.

CWE
CWE-1191

On-Chip Debug and Test Interface With Improper Access Control