Home

Description

Incorrect access control in the realtime.cgi endpoint of Deep Sea Electronics devices DSE855 v1.1.0 to v1.1.26 allows attackers to gain access to the admin panel and complete control of the device.

PUBLISHED Reserved 2025-03-11 | Published 2025-10-31 | Updated 2025-10-31 | Assigner mitre

References

blog.byteray.co.uk/...855-communications-device-938e35d4b361

cve.org (CVE-2025-29270)

nvd.nist.gov (CVE-2025-29270)

Download JSON