CVE Vulnerabilities

CVE-2025-1283

Authentication Bypass Using an Alternate Path or Channel

Published: Feb 13, 2025 | Modified: Apr 10, 2025
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

The Dingtian DT-R0 Series is vulnerable to an exploit that allows attackers to bypass login requirements by directly navigating to the main page.

Weakness

The product requires authentication, but the product has an alternate path or channel that does not require authentication.

Affected Software

Name Vendor Start Version End Version
Dt-r002_firmware Dingtian-tech 3.1.3044a (including) 3.1.3044a (including)

Potential Mitigations

References