Password Storage Vulnerability in CHOCO TEI WATCHER Mini by Inaba
CVE-2025-24852

4.6MEDIUM

What is CVE-2025-24852?

The CHOCO TEI WATCHER Mini (IB-MCT001) is affected by a security flaw that involves storing passwords in a recoverable format. This vulnerability is of particular concern because if an attacker gains access to the microSD card used in the device, they can retrieve sensitive login credentials. Users are advised to implement strict security measures to prevent unauthorized access to the microSD card and consider alternative authentication methods to safeguard their data.

Affected Version(s)

CHOCO TEI WATCHER mini (IB-MCT001) all versions

References

CVSS V3.1

Score:
4.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.