Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 were discovered to lack SPI Protected Range Registers (PRRs), allowing attackers with software running on the system to modify SPI flash in real-time.
Metrics
Affected Vendors & Products
References
History
Wed, 27 Aug 2025 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-1233 | |
Metrics |
cvssV3_1
|
Wed, 27 Aug 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Kapsch
Kapsch ris-9160 Kapsch ris-9260 |
|
Vendors & Products |
Kapsch
Kapsch ris-9160 Kapsch ris-9260 |
Tue, 26 Aug 2025 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 were discovered to lack SPI Protected Range Registers (PRRs), allowing attackers with software running on the system to modify SPI flash in real-time. | |
References |
|
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-08-26T00:00:00.000Z
Updated: 2025-08-27T14:08:30.169Z
Reserved: 2025-02-07T00:00:00.000Z
Link: CVE-2025-25735

No data.

Status : Received
Published: 2025-08-26T15:15:42.617
Modified: 2025-08-27T14:15:48.553
Link: CVE-2025-25735

No data.