PT-2025-31805 · Intelbras · Intelbras Incontrol
Lorenzomoulin
·
Published
2025-08-04
·
Updated
2025-08-04
·
CVE-2025-8515
Lorenzomoulin
·
Published
2025-08-04
·
Updated
2025-08-04
·
CVE-2025-8515
3.1
Low
Base vector | Vector | AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Intelbras InControl version 2.21.60.9
Description:
A vulnerability exists in Intelbras InControl that allows for information disclosure. The issue is related to the processing of the `/v1/operador/` JSON Endpoint. The exploitation of this issue is difficult and requires a high level of complexity, but the exploit has been publicly disclosed.
Recommendations:
Upgrade the affected component to address the issue.
Fix
Improper Access Control
Information Disclosure