CVE 9.8 CRITICAL

Packet Power EMX and EG Missing Authentication for Critical Function_CVE-2025-8284

9.8 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

By default, the Packet Power Monitoring and Control Web Interface do not
enforce authentication mechanisms. This vulnerability could allow
unauthorized users to access and manipulate monitoring and control
functions.

AI Analysis

The Packet Power EMX and EG systems lack authentication for critical functions, allowing unauthorized access and manipulation of monitoring and control functions.

Basic Information

ID CVE-2025-8284
Source icscert
Published Aug 8, 2025 at 16:27

Affected Product

Vendor Packet Power
Product EMX
Affected Versions Packet Power EMX 0
Packet Power EG 0

CWE Classification

AI Assessment

AI Severity Critical
Vendor Packet Power
Product Packet Power EMX, Packet Power EG

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.