CVE-2025-7884

A vulnerability classified as problematic was found in Eluktronics Control Center 5.23.51.41. Affected by this vulnerability is an unknown functionality of the component REG File Handler. The manipulation leads to insufficient verification of data authenticity. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
References
Link Resource
https://drive.proton.me/urls/5PQ1VRZ3CG#M2JyUWapaX85 Broken Link
https://vuldb.com/?ctiid.316999 Permissions Required VDB Entry
https://vuldb.com/?id.316999 Third Party Advisory VDB Entry
https://vuldb.com/?submit.611436 Third Party Advisory VDB Entry
https://drive.proton.me/urls/5PQ1VRZ3CG#M2JyUWapaX85 Broken Link
Configurations

Configuration 1 (hide)

cpe:2.3:a:eluktronics:control_center:5.23.51.41:*:*:*:*:*:*:*

History

15 Sep 2025, 18:46

Type Values Removed Values Added
CPE cpe:2.3:a:eluktronics:control_center:5.23.51.41:*:*:*:*:*:*:*
References () https://drive.proton.me/urls/5PQ1VRZ3CG#M2JyUWapaX85 - () https://drive.proton.me/urls/5PQ1VRZ3CG#M2JyUWapaX85 - Broken Link
References () https://vuldb.com/?ctiid.316999 - () https://vuldb.com/?ctiid.316999 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.316999 - () https://vuldb.com/?id.316999 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.611436 - () https://vuldb.com/?submit.611436 - Third Party Advisory, VDB Entry
First Time Eluktronics
Eluktronics control Center

22 Jul 2025, 13:06

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad clasificada como problemática en Eluktronics Control Center 5.23.51.41. Esta vulnerabilidad afecta a una funcionalidad desconocida del componente REG File Handler. La manipulación provoca una verificación insuficiente de la autenticidad de los datos. Es posible lanzar el ataque contra el host local. Se ha hecho público el exploit y puede que sea utilizado. Se contactó al proveedor con antelación sobre esta divulgación, pero no respondió.

21 Jul 2025, 15:15

Type Values Removed Values Added
References () https://drive.proton.me/urls/5PQ1VRZ3CG#M2JyUWapaX85 - () https://drive.proton.me/urls/5PQ1VRZ3CG#M2JyUWapaX85 -

20 Jul 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-20 11:15

Updated : 2025-09-15 18:46


NVD link : CVE-2025-7884

Mitre link : CVE-2025-7884

CVE.ORG link : CVE-2025-7884


JSON object : View

Products Affected

eluktronics

  • control_center
CWE
CWE-345

Insufficient Verification of Data Authenticity