PT-2025-10997 · Optigo Networks · Optigo Visual Networks Capture Tool
Tomer Goldschmidt
·
Published
2025-03-11
·
Updated
2025-03-15
·
CVE-2025-2080
CVSS v4.0
9.3
Critical
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions:
Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1.2rc11
Description:
The issue concerns an exposed web management service that could allow an attacker to bypass authentication measures and gain control over utilities within the products.
Recommendations:
For Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1.2rc11, consider disabling the web management service until a patch is available to prevent potential exploitation.
Fix
Authentication Bypass Using an Alternate Path or Channel
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Optigo Visual Networks Capture Tool