CVE Details
Basic Information
| Title | Eluktronics Control Center REG File data authenticity |
|---|---|
| Type | cve |
| Published | 2025-07-20T11:02:05.370Z |
| Modified | 2025-07-20T11:02:05.370Z |
Product Information
| Vendor | Eluktronics |
|---|---|
| Product | Control Center |
| Version | 5.23.51.41 |
CVSS Information
| Base Score | 4.8 (MEDIUM) |
|---|---|
| Attack Vector | CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P |
AI Analysis
| AI Description | A vulnerability in Eluktronics Control Center allows attackers to manipulate data due to insufficient authenticity verification in the REG File Handler. This can be exploited locally and has been publicly disclosed. |
|---|---|
| AI Severity | Medium |
| AI Vendor | Eluktronics |
| AI Product | Control Center |
| AI Version | 5.23.51.41 |
Affected Products
- Eluktronics Control Center 5.23.51.41
Additional Information
| CWE List | CWE-345 |
|---|---|
| Source | VulDB |
Description
A vulnerability classified as problematic was found in Eluktronics Control Center 5.23.51.41. Affected by this vulnerability is an unknown functionality of the component REG File Handler. The manipulation leads to insufficient verification of data authenticity. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.