Vulnerability Details
Basic Information
| Title | CVE-2025-2185 ALBEDO Telecom Net.Time – PTP/NTP Clock Insufficient Session Expiration |
|---|---|
| Type | cvelist |
| Published | 2025-04-24T23:22:35 |
| Last Seen | 2025-04-24T23:53:22 |
| CVSS Score | 8.0 (HIGH) |
CVSS v3 Details
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | LOW |
| User Interaction | REQUIRED |
| Scope | UNCHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | HIGH |
| Availability Impact | HIGH |
CVE Information
| CVE IDs | CVE-2025-2185 |
|---|---|
| CWE | CWE-613 |
| Bulletin Family | cve |
Description
ALBEDO Telecom Net.Time – PTP/NTP clock (Serial No. NBC0081P) software release 1.4.4 is vulnerable to an insufficient session expiration vulnerability, which
could permit an attacker to transmit passwords over unencrypted
connections, resulting in the product becoming vulnerable to
interception.
could permit an attacker to transmit passwords over unencrypted
connections, resulting in the product becoming vulnerable to
interception.
Impact Assessment
| Base Score | 8.0 |
|---|---|
| Severity | HIGH |