CVE-2025-48733
Severity CVSS v4.0:
HIGH
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
22/07/2025
Last modified:
15/04/2026
Description
DuraComm SPM-500 DP-10iN-100-MU<br />
<br />
lacks access controls for a function that should require user authentication. This could allow an attacker to repeatedly reboot the device.
Impact
Base Score 4.0
8.70
Severity 4.0
HIGH
Base Score 3.x
7.50
Severity 3.x
HIGH



