CVE-2025-27455

Published Jul 3, 2025

Last updated 4 months ago

Overview

Description
The web application is vulnerable to clickjacking attacks. The site can be embedded into another frame, allowing an attacker to trick a user into clicking on something different from what the user perceives, thus potentially revealing confidential information or allowing others to take control of their computer while clicking on seemingly innocuous objects.
Source
psirt@sick.de
NVD status
Analyzed
Products
meac300-fnade4_firmware

Risk scores

CVSS 3.1

Type
Primary
Base score
6.1
Impact score
2.7
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Severity
MEDIUM

Weaknesses

psirt@sick.de
CWE-1021

Social media

Hype score
Not currently trending

Configurations