CVE-2025-10127

EUVD-2025-28991
Daikin Europe N.V

Security Gateway is vulnerable to an authorization bypass through
 a user-controlled key vulnerability that could allow an attacker to 
bypass authentication. An unauthorized attacker could access the system 
without prior credentials.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
icscertCNA
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H