SaTECH BCU in its firmware version 2.1.3 uses the HTTP protocol. The use of the HTTP protocol for web browsing has the problem that information is exchanged in unencrypted text. Since sensitive data such as credentials are exchanged, an attacker could obtain them and log in legitimately.
Metrics
Affected Vendors & Products
References
History
Fri, 10 Oct 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Arteche
Arteche satech Bcu Arteche satech Bcu Firmware |
|
CPEs | cpe:2.3:h:arteche:satech_bcu:-:*:*:*:*:*:*:* cpe:2.3:o:arteche:satech_bcu_firmware:2.1.3:*:*:*:*:*:*:* |
|
Vendors & Products |
Arteche
Arteche satech Bcu Arteche satech Bcu Firmware |
|
Metrics |
cvssV3_1
|
Thu, 03 Apr 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 28 Mar 2025 13:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | SaTECH BCU in its firmware version 2.1.3 uses the HTTP protocol. The use of the HTTP protocol for web browsing has the problem that information is exchanged in unencrypted text. Since sensitive data such as credentials are exchanged, an attacker could obtain them and log in legitimately. | |
Title | Cleartext Transmission of Sensitive Information vulnerability in saTECH BCU | |
Weaknesses | CWE-319 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-04-03T12:58:35.556Z
Reserved: 2025-03-27T10:59:42.618Z
Link: CVE-2025-2861

Updated: 2025-03-28T13:35:11.445Z

Status : Analyzed
Published: 2025-03-28T14:15:21.113
Modified: 2025-10-10T16:39:56.190
Link: CVE-2025-2861

No data.

No data.