Deserialization Vulnerability in SEAT Queue Ticket Kiosk by SEAT
CVE-2025-10252
What is CVE-2025-10252?
A vulnerability has been identified in the SEAT Queue Ticket Kiosk, specifically within the Java RMI Registry Handler, which allows for deserialization manipulation. This issue affects versions of the product up until August 27, 2025. The exploit can only be executed from within the local network, posing a challenge for potential attackers. Although the vendor was notified of this issue, they did not respond to the disclosure. The complexity of the attack suggests that while it is technically feasible, it may require a certain level of expertise to exploit effectively.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Queue Ticket Kiosk 20250827
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
