Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2025-8626 | SaTECH BCU in its firmware version 2.1.3, allows an authenticated attacker to access information about the credentials that users have within the web (.xml file). In order to exploit this vulnerability, the attacker must know the path, regardless of the user's privileges on the website. |
Solution
The vulnerability has been fixed by Arteche in firmware version 2.2.1.
Workaround
No workaround given by the vendor.
Fri, 10 Oct 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Arteche
Arteche satech Bcu Arteche satech Bcu Firmware |
|
CPEs | cpe:2.3:h:arteche:satech_bcu:-:*:*:*:*:*:*:* cpe:2.3:o:arteche:satech_bcu_firmware:2.1.3:*:*:*:*:*:*:* |
|
Vendors & Products |
Arteche
Arteche satech Bcu Arteche satech Bcu Firmware |
|
Metrics |
cvssV3_1
|
Fri, 28 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 28 Mar 2025 13:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | SaTECH BCU in its firmware version 2.1.3, allows an authenticated attacker to access information about the credentials that users have within the web (.xml file). In order to exploit this vulnerability, the attacker must know the path, regardless of the user's privileges on the website. | |
Title | Exposure of Sensitive Information vulnerability in saTECH BCU | |
Weaknesses | CWE-200 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-03-28T13:37:58.540Z
Reserved: 2025-03-27T10:59:41.906Z
Link: CVE-2025-2860

Updated: 2025-03-28T13:37:55.288Z

Status : Analyzed
Published: 2025-03-28T14:15:20.967
Modified: 2025-10-10T16:40:16.290
Link: CVE-2025-2860

No data.

No data.