Cross Site Request Forgery (CSRF) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.00 allows attackers to execute arbitrary code, cause a denial of service, gain escalated privileges, and gain sensitive information.
Metrics
Affected Vendors & Products
References
History
Fri, 10 Oct 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Endruntechnologies
Endruntechnologies sonoma D12 Endruntechnologies sonoma D12 Firmware |
|
| CPEs | cpe:2.3:h:endruntechnologies:sonoma_d12:4.00:*:*:*:*:*:*:* cpe:2.3:o:endruntechnologies:sonoma_d12_firmware:6010-0071-000:*:*:*:*:*:*:* |
|
| Vendors & Products |
Endruntechnologies
Endruntechnologies sonoma D12 Endruntechnologies sonoma D12 Firmware |
Wed, 08 Oct 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Endrun
Endrun sonoma D12 Network Time Server |
|
| Vendors & Products |
Endrun
Endrun sonoma D12 Network Time Server |
Mon, 06 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-352 | |
| Metrics |
cvssV3_1
|
Mon, 06 Oct 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross Site Request Forgery (CSRF) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.00 allows attackers to execute arbitrary code, cause a denial of service, gain escalated privileges, and gain sensitive information. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-10-06T00:00:00.000Z
Updated: 2025-10-06T19:27:45.501Z
Reserved: 2025-09-26T00:00:00.000Z
Link: CVE-2025-60956
Updated: 2025-10-06T19:26:08.546Z
Status : Analyzed
Published: 2025-10-06T17:16:06.373
Modified: 2025-10-10T16:36:22.857
Link: CVE-2025-60956
No data.