CVE-2025-48468

EUVD-2025-18989
Successful exploitation of the vulnerability could allow an attacker that has physical access to interface with JTAG to inject or modify firmware.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.4 MEDIUM
PHYSICAL
HIGH
NONE
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
advantechwise-4010lan_firmware
2.02b00:b00
advantechwise-4050lan_firmware
2.02b00:b00
advantechwise-4060lan_firmware
2.02b00:b00
𝑥
= Vulnerable software versions