Script Execution Vulnerability in Bizerba Reports
CVE-2025-6512

10CRITICAL

Key Information:

Status
Vendor
CVE Published:
23 June 2025

What is CVE-2025-6512?

A vulnerability exists in Bizerba's BRAIN2 where non-admin users can inject scripts into reports, which may be executed later with elevated privileges on the server. This could potentially allow unauthorized access to sensitive data or the execution of harmful actions, highlighting the need for stringent validation of user inputs and permissions within the application.

Affected Version(s)

BRAIN2 Windows 0.0

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-6512 : Script Execution Vulnerability in Bizerba Reports