lacks access controls for a function that should require user authentication. This could allow an attacker to repeatedly reboot the device.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-22379 | DuraComm SPM-500 DP-10iN-100-MU lacks access controls for a function that should require user authentication. This could allow an attacker to repeatedly reboot the device. |
Solution
DuraComm recommends users update to Version 4.10A. Contact DuraComm https://duracomm.com/contact-us/ to obtain the update.
Workaround
No workaround given by the vendor.
Wed, 23 Jul 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 22 Jul 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | DuraComm SPM-500 DP-10iN-100-MU lacks access controls for a function that should require user authentication. This could allow an attacker to repeatedly reboot the device. | |
| Title | DuraComm DP-10iN-100-MU Missing Authentication for Critical Function | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-07-23T19:56:55.222Z
Reserved: 2025-07-15T20:19:54.848Z
Link: CVE-2025-48733
Updated: 2025-07-23T19:56:51.212Z
Status : Awaiting Analysis
Published: 2025-07-22T22:15:37.440
Modified: 2025-07-25T15:29:44.523
Link: CVE-2025-48733
No data.
OpenCVE Enrichment
No data.
EUVD