CVE-2025-28233 Details
Description
Incorrect access control in BW Broadcast TX600 (14980), TX300 (32990) (31448), TX150, TX1000, TX30, and TX50 Hardware Version: 2, Software Version: 1.6.0, Control Version: 1.0, AIO Firmware Version: 1.7 allows attackers to access log files and extract session identifiers to execute a session hijacking attack.
A session hijacking vulnerability exists in the BW Broadcast Transmitter Management System, specifically in the TX600, TX300, TX150, TX1000, TX30, and TX50 models. This vulnerability arises from incorrect access control that allows log files to be accessed over HTTP without authentication. These logs contain sensitive session identifiers related to successful remote logins, which attackers can extract and use to gain unauthorized access to the system, potentially leading to administrative compromise.
To address this vulnerability, BW Broadcast should implement access controls to restrict log file access to authorized users only. Public access to log files should be disabled, and sensitive data such as session identifiers should be redacted before logging. Additionally, a security review could help identify other potential exposure points, and monitoring for unauthorized log access attempts could provide an extra layer of security.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Apr 18, 2025CISA-ADP
Assessed Apr 22, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/shiky8/my--cve-vulnerability-research/tree/main/CVE-2025-28233 | CISA-ADP | ExploitRemedyTechnical Description |
| https://github.com/shiky8/my--cve-vulnerability-research/tree/main/CVE-2025-28233 | [email protected] | ExploitRemedyTechnical Description |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-284 | Improper Access Control | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| BW Broadcast TX600 | All versions |
CPE
Remediation
| |
| BW Broadcast TX300 | All versions |
CPE
Remediation
| |
| BW Broadcast TX150 | All versions |
CPE
Remediation
| |
| BW Broadcast TX1000 | All versions |
CPE
Remediation
| |
| BW Broadcast TX30 | All versions |
CPE
Remediation
| |
| BW Broadcast TX50 | All versions |
CPE
Remediation
| |
| BW Broadcast Transmitter Management System | TX600 (14980) TX300 (32990) (31448) TX150 TX1000 TX30 TX50 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Apr 22, 2025 | CVE Modified | CISA-ADP |
| Apr 18, 2025 | New CVE Received | [email protected] |
Volerion