← Volver a CVEs
CVE-2025-45583
CRITICAL9.1
Descripcion
Incorrect access control in the FTP protocol of Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to authenticate into the service using any combination of username and password.
Detalles CVE
Puntuacion CVSS v3.19.1
SeveridadCRITICAL
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado9/12/2025
Ultima modificacion10/16/2025
Fuentenvd
Avistamientos honeypot0
Productos afectados
audi:universal_traffic_recorderaudi:universal_traffic_recorder_firmware
Debilidades (CWE)
CWE-287
Referencias
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.