Metrics
Affected Vendors & Products
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        
        epss
         
  | 
    
        
        
        epss
         
  | 
Mon, 17 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Sun, 16 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability classified as critical has been found in IROAD X5 Mobile App up to 5.2.5 on Android. Affected is an unknown function of the component API Endpoint. The manipulation leads to hard-coded credentials. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | IROAD X5 Mobile App API Endpoint hard-coded credentials | |
| Weaknesses | CWE-259 CWE-798  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published: 2025-03-16T16:00:07.647Z
Updated: 2025-03-17T14:18:23.651Z
Reserved: 2025-03-15T18:22:19.438Z
Link: CVE-2025-2342
Updated: 2025-03-17T14:18:20.279Z
Status : Received
Published: 2025-03-16T16:15:11.613
Modified: 2025-03-16T16:15:11.613
Link: CVE-2025-2342
No data.