CVE-2025-15548
Severity CVSS v4.0:
MEDIUM
Type:
CWE-311
Missing Encryption of Sensitive Data
Publication date:
29/01/2026
Last modified:
29/01/2026
Description
Some VX800v v1.0 web interface endpoints transmit sensitive information over unencrypted HTTP due to missing application layer encryption, allowing a network adjacent attacker to intercept this traffic and compromise its confidentiality.
Impact
Base Score 4.0
5.30
Severity 4.0
MEDIUM



