216.73.216.82

CVE-2025-2185

· Published 25/04/2025 00:15 · Modified 25/04/2025 00:15

Labels: CVE-2025-2185 2025-04-25CVE-2025-2185CWE-613[email protected]

Essential information

Published
25/04/2025 00:15
Modified
25/04/2025 00:15
Author
Creator
CVSS
8.5 HIGH (v3) 8.5 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

ALBEDO Telecom Net.Time - PTP/NTP clock (Serial No. NBC0081P) software release 1.4.4 is vulnerable to an insufficient session expiration vulnerability, which could permit an attacker to transmit passwords over unencrypted connections, resulting in the product becoming vulnerable to interception.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
albedo / net.time cpe:2.3:a:albedo:net.time:1.4.4:*:*:*:*:*:*:*

References