Privilege Escalation in ESPEC North America Web Controller by Unprotected GRUB and BIOS
CVE-2025-27846
4.3MEDIUM
What is CVE-2025-27846?
In ESPEC North America Web Controller versions prior to 3.3.8, a vulnerability exists allowing an attacker with physical access to exploit unprotected GRUB and BIOS configurations. This can lead to unauthorized elevation of privileges, potentially compromising the integrity of the system and exposing sensitive data to malicious actors.
