PT-2025-53330 · Legrand · Legrand Bticino Driver Manager F454

Published

2025-12-24

·

Updated

2025-12-24

·

CVE-2019-25244

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Legrand BTicino Driver Manager F454 version 1.0.51
Description The software contains web vulnerabilities that permit attackers to carry out administrative tasks without sufficient request validation. An attacker can leverage cross-site request forgery to modify passwords and inject stored cross-site scripting payloads via unvalidated GET parameters.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Weakness Enumeration

Related Identifiers

CVE-2019-25244

Affected Products

Legrand Bticino Driver Manager F454