A remote unauthenticated attacker may use default certificates to generate JWT Tokens and gain full access to the tool and all connected devices.
References
Configurations
No configuration.
History
08 Jul 2025, 16:18
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-07 07:15
Updated : 2025-07-08 16:18
NVD link : CVE-2025-41672
Mitre link : CVE-2025-41672
CVE.ORG link : CVE-2025-41672
JSON object : View
Products Affected
No product.
CWE
CWE-1188
Initialization of a Resource with an Insecure Default