6.5
CVSSv3

CVE-2025-25728

CVSSv4: NA | CVSSv3: 6.5 | CVSSv2: NA | VMScore: 750 | EPSS: 0.00015 | KEV: Not Included
Published: 28/02/2025 Updated: 19/03/2025

Vulnerability Summary

Bosscomm IF740 Firmware Plaintext Update API Vulnerability Enables MITM Attack

Bosscomm IF740 Firmware versions:11001.7078 & v11001.0000 and System versions: 6.25 & 6.00 were discovered to send communications to the update API in plaintext, allowing malicious users to access sensitive information via a man-in-the-middle attack.