URL Manipulation Vulnerability in OutBack Power Products
CVE-2025-25281

8.7HIGH

Key Information:

Vendor
CVE Published:
13 February 2025

What is CVE-2025-25281?

A vulnerability exists in OutBack Power products that allows attackers to manipulate URLs, potentially exposing sensitive information within the target network. This manipulation could enable unauthorized access to critical data, highlighting the need for robust security measures.

Affected Version(s)

Mojave Inverter All versions

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jon Hurtado of Sandia National Laboratory reported these vulnerabilities to CISA.
.