CVE-2025-6519

E3 Site Supervisor (firmware version < 2.31F01) has a default admin user "ONEDAY" with a daily generated password. An attacker can predictably generate the password for ONEDAY. The oneday user cannot be deleted or modified by any user.
CVSS

No CVSS.

Configurations

No configuration.

History

02 Sep 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-02 12:15

Updated : 2025-09-02 15:55


NVD link : CVE-2025-6519

Mitre link : CVE-2025-6519

CVE.ORG link : CVE-2025-6519


JSON object : View

Products Affected

No product.

CWE
CWE-522

Insufficiently Protected Credentials