Vulnerability Description
The JTAG interface of Wattsense Bridge devices can be accessed with physical access to the PCB. After connecting to the interface, full access to the device is possible. This enables an attacker to extract information, modify and debug the device's firmware. All known versions are affected.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://r.sec-consult.com/wattsense
- https://support.wattsense.com/hc/en-150/articles/13366066529437-Release-Notes
- http://seclists.org/fulldisclosure/2025/Feb/9
FAQ
What is CVE-2025-26408?
CVE-2025-26408 is a vulnerability with a CVSS score of 6.1 (MEDIUM). The JTAG interface of Wattsense Bridge devices can be accessed with physical access to the PCB. After connecting to the interface, full access to the device is possible. This enables an attacker to ex...
How severe is CVE-2025-26408?
CVE-2025-26408 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-26408?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.