Home

Description

Incorrect access control in Comtech EF Data CDM-625 / CDM-625A Advanced Satellite Modem with firmware v2.5.1 allows attackers to change the Administrator password and escalate privileges via sending a crafted POST request to /Forms/admin_access_1.

PUBLISHED Reserved 2025-12-08 | Published 2025-12-26 | Updated 2025-12-26 | Assigner mitre

References

www.comtechefdata.com/

github.com/...25 _ CDM-625A Advanced _ Broken Access Control

cve.org (CVE-2025-67015)

nvd.nist.gov (CVE-2025-67015)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.