First published: Mon Mar 31 2025(Updated: )
Use of client-side authentication issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If this issue is exploited, a remote attacker may obtain the product login password without authentication.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
CHOCO TEI WATCHER mini | ||
CHOCO TEI WATCHER mini | <=all versions |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-24517 is considered a medium severity vulnerability due to its potential for remote exploitation leading to unauthorized password access.
To fix CVE-2025-24517, it is recommended to update to the latest version of CHOCO TEI WATCHER mini (IB-MCT001) released by Inaba Denki Sangyo Co., Ltd.
CVE-2025-24517 affects all versions of CHOCO TEI WATCHER mini (IB-MCT001) by Inaba Denki Sangyo Co., Ltd.
A remote attacker can exploit CVE-2025-24517 to obtain the product login password without the need for authentication.
Yes, a patch for CVE-2025-24517 should be made available through updates provided by the vendor.