CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper restriction of rendered UI layers or frames. If a user clicks on content on a malicious web page while logged into the product, unintended operations may be performed on the product.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 23 Dec 2025 22:00:00 +0000

Type Values Removed Values Added
First Time appeared Inaba ib-mct001 Firmware
CPEs cpe:2.3:h:inaba:ib-mct001:-:*:*:*:*:*:*:*
cpe:2.3:o:inaba:ib-mct001_firmware:-:*:*:*:*:*:*:*
Vendors & Products Inaba ib-mct001 Firmware
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}


Tue, 16 Dec 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 16 Dec 2025 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Inaba
Inaba ib-mct001
Vendors & Products Inaba
Inaba ib-mct001

Tue, 16 Dec 2025 05:00:00 +0000

Type Values Removed Values Added
Description CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper restriction of rendered UI layers or frames. If a user clicks on content on a malicious web page while logged into the product, unintended operations may be performed on the product.
Weaknesses CWE-1021
References
Metrics cvssV3_0

{'score': 4.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2025-12-16T20:44:46.280Z

Reserved: 2025-11-27T14:15:04.880Z

Link: CVE-2025-59479

cve-icon Vulnrichment

Updated: 2025-12-16T20:39:31.316Z

cve-icon NVD

Status : Analyzed

Published: 2025-12-16T05:16:13.097

Modified: 2025-12-23T21:46:53.207

Link: CVE-2025-59479

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-12-16T20:45:22Z

Weaknesses