9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
Waveshare RS232/485 TO WIFI ETH (B) Serial to Ethernet/Wi-Fi Gateway Firmware V3.1.1.0: HW 4.3.2.1: Webpage V7.04T.07.002880.0301 allows attackers to set the Administrator password and username as blank values, allowing attackers to bypass authentication.
AI Analysis
Authentication bypass vulnerability in Waveshare RS232/485 TO WIFI ETH (B) Serial to Ethernet/Wi-Fi Gateway Firmware V3.1.1.0
Basic Information
ID
CVE-2025-63362
Source
mitre
Published
Dec 4, 2025 at 00:00
Modified
Dec 8, 2025 at 15:35
Affected Product
Vendor
Waveshare
Product
Waveshare RS232/485 TO WIFI ETH (B)
Version
V3.1.1.0
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
9.8 / 10
AI Severity
Critical
Vendor
Waveshare
Product
RS232/485 TO WIFI ETH (B) Serial to Ethernet/Wi-Fi Gateway
Version
V3.1.1.0