CSRF Vulnerability in ETL Systems Ltd DEXTRA Series Digital L-Band Distribution System
CVE-2025-67013

6.5MEDIUM

What is CVE-2025-67013?

The web management interface of the ETL Systems Ltd DEXTRA Series Digital L-Band Distribution System version 1.8 lacks essential Cross-Site Request Forgery (CSRF) protection measures. This oversight means that critical configuration endpoints are vulnerable, as there is no implementation of tokens or Origin/Referer validation. Attackers could exploit this vulnerability to manipulate configurations without user consent, leading to potential breaches and unauthorized actions.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-67013 : CSRF Vulnerability in ETL Systems Ltd DEXTRA Series Digital L-Band Distribution System