Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-26689


Direct request ('Forced Browsing') issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If a remote attacker sends a specially crafted HTTP request to the product, the product data may be obtained or deleted, and/or the product settings may be altered.


Published

2025-03-31T05:15:15.933

Last Modified

2025-04-01T20:26:30.593

Status

Awaiting Analysis

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-425

Affected Vendors & Products

-


References