Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-28235


An information disclosure vulnerability in the component /socket.io/1/websocket/ of Soundcraft Ui Series Model(s) Ui12 and Ui16 Firmware v1.0.7x and v1.0.5x allows attackers to access Administrator credentials in plaintext.


Published

2025-04-18T18:15:45.723

Last Modified

2025-04-22T15:16:11.813

Status

Awaiting Analysis

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-200

Affected Vendors & Products

-


References