UART Interface Vulnerability in TBEA TLogger by TBEA
CVE-2025-15680
2.4LOW
What is CVE-2025-15680?
The TBEA TLogger version 2.1.0.0B0.0.0.0 contains a significant vulnerability that exposes a UART interface on the device's circuit board without adequate security measures. This flaw allows a nearby attacker to connect to the UART interface, thereby gaining access to critical information including the device's boot process, runtime debug output, operating system details, software versions, network configurations, filesystem paths, and additional sensitive implementation data. This information could potentially aid an attacker in compromising the device further.
Affected Version(s)
TBEA TLogger (TBEA Communication Box 3rd Generation) 0
References
CVSS V4
Score:
2.4
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Physical
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
S. Eisenreich-Dietz (CyberDanube)
T. Weber (CyberDanube)
F. Koroknai
D. Blagojevic
