CVE-2025-51040

Electrolink FM/DAB/TV Transmitter Web Management System Unauthorized access vulnerability via the /FrameSetCore.html endpoint in Electrolink 500W, 1kW, 2kW Medium DAB Transmitter Web v01.09, v01.08, v01.07, and Display v1.4, v1.2.
References
Link Resource
https://github.com/p0et08/Electrolink-FM-DAB-TV Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:electrolink:fm\/dab\/tv_transmitter_web_management_system:01.07:*:*:*:*:*:*:*
cpe:2.3:a:electrolink:fm\/dab\/tv_transmitter_web_management_system:01.08:*:*:*:*:*:*:*
cpe:2.3:a:electrolink:fm\/dab\/tv_transmitter_web_management_system:01.09:*:*:*:*:*:*:*
OR cpe:2.3:h:electrolink:medium_1kw:-:*:*:*:*:*:*:*
cpe:2.3:h:electrolink:medium_2kw:-:*:*:*:*:*:*:*
cpe:2.3:h:electrolink:medium_500w:-:*:*:*:*:*:*:*

History

09 Oct 2025, 19:38

Type Values Removed Values Added
References () https://github.com/p0et08/Electrolink-FM-DAB-TV - () https://github.com/p0et08/Electrolink-FM-DAB-TV - Exploit, Third Party Advisory
CPE cpe:2.3:h:electrolink:medium_500w:-:*:*:*:*:*:*:*
cpe:2.3:a:electrolink:fm\/dab\/tv_transmitter_web_management_system:01.07:*:*:*:*:*:*:*
cpe:2.3:h:electrolink:medium_2kw:-:*:*:*:*:*:*:*
cpe:2.3:a:electrolink:fm\/dab\/tv_transmitter_web_management_system:01.09:*:*:*:*:*:*:*
cpe:2.3:a:electrolink:fm\/dab\/tv_transmitter_web_management_system:01.08:*:*:*:*:*:*:*
cpe:2.3:h:electrolink:medium_1kw:-:*:*:*:*:*:*:*
Summary
  • (es) Vulnerabilidad de acceso no autorizado a través del endpoint /FrameSetCore.html en Electrolink FM/DAB/TV Transmitter Web Management System, versiones v01.09, v01.08, v01.07 y Display v1.4, v1.2.
First Time Electrolink medium 1kw
Electrolink fm\/dab\/tv Transmitter Web Management System
Electrolink medium 2kw
Electrolink
Electrolink medium 500w

06 Aug 2025, 20:23

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-200

06 Aug 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-06 15:15

Updated : 2025-10-09 19:38


NVD link : CVE-2025-51040

Mitre link : CVE-2025-51040

CVE.ORG link : CVE-2025-51040


JSON object : View

Products Affected

electrolink

  • medium_1kw
  • medium_500w
  • medium_2kw
  • fm\/dab\/tv_transmitter_web_management_system
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor