PT-2025-40897 · Orban · Orban Optimod Trio+3

Giulioschiavone

·

Published

2025-10-06

·

Updated

2025-10-06

·

CVE-2025-61197

CVSS v3.1

8.9

High

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:L
Name of the Vulnerable Software and Affected Versions Orban Optimod 5950 Orban Optimod 5950HD Orban Optimod 5750 Orban Optimod 5750HD Orban Optimod Trio versions 1.0.0.33 through 2.5.26
Description A flaw exists that allows a remote attacker to escalate privileges. The application stores user privilege and role information in client-side browser storage, potentially allowing unauthorized access.
Recommendations Update Orban Optimod 5950 to a version later than 2.5.26. Update Orban Optimod 5950HD to a version later than 2.5.26. Update Orban Optimod 5750 to a version later than 2.5.26. Update Orban Optimod 5750HD to a version later than 2.5.26. Update Orban Optimod Trio to a version later than 2.5.26.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-61197

Affected Products

Orban Optimod 5750
Orban Optimod 5750Hd
Orban Optimod 5950
Orban Optimod Trio