Information Disclosure Vulnerability in Electronics Registration Service by EG4 Electronics
CVE-2025-47872
What is CVE-2025-47872?
The product registration endpoint of EG4 Electronics is susceptible to an information disclosure vulnerability. This vulnerability arises from the endpoint's inconsistent response behavior based on the state of the serial number (S/N). It reacts differently when the S/N is valid and unregistered, valid but already registered, or nonexistent in the database. Because the serial numbers are assigned in a sequential manner, an attacker could exploit this behavior to infer the registration status of various S/Ns, potentially leading to unauthorized access to sensitive product registration information.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
EG4 12000XP all versions
EG4 12kPV all versions
EG4 18kPV all versions
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
