Unencrypted Data Transmission in SaTECH BCU Firmware
CVE-2025-2861
What is CVE-2025-2861?
The SaTECH BCU, specifically in firmware version 2.1.3, makes use of the HTTP protocol for web interactions. This approach exposes sensitive information, including user credentials, in plaintext during transmission. As a result, an attacker with the ability to intercept network traffic can easily capture this data, potentially allowing unauthorized access and manipulation of user accounts. It is crucial to note the risks associated with this unencrypted data exchange and implement necessary security measures to safeguard sensitive information.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
saTECH BCU 2.1.3
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
