Vulnerability Description
Tiiwee X1 Alarm System TWX1HAKV2 allows Authentication Bypass by Capture-replay, leading to physical Access to the protected facilities without triggering an alarm.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tiiwee | Twx1Hakv2 Firmware | - |
| Tiiwee | Twx1Hakv2 | - |
Related Weaknesses (CWE)
References
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2025-006.tThird Party Advisory
- https://www.tiiwee.com/collections/x1-alarm-systemsProduct
- http://seclists.org/fulldisclosure/2025/May/20Mailing List
FAQ
What is CVE-2025-30072?
CVE-2025-30072 is a vulnerability with a CVSS score of 7.6 (HIGH). Tiiwee X1 Alarm System TWX1HAKV2 allows Authentication Bypass by Capture-replay, leading to physical Access to the protected facilities without triggering an alarm.
How severe is CVE-2025-30072?
CVE-2025-30072 has been rated HIGH with a CVSS base score of 7.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-30072?
Check the references section above for vendor advisories and patch information. Affected products include: Tiiwee Twx1Hakv2 Firmware, Tiiwee Twx1Hakv2.