CVE-2025-24852

MEDIUM

CHOCO TEI WATCHER mini - Info Disclosure

Title source: llm
STIX 2.1

Description

Storing passwords in a recoverable format issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If this issue is exploited, an attacker who can access the microSD card used on the product may obtain the product login password.

Scores

CVSS v3 4.6
EPSS 0.0013
EPSS Percentile 31.4%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-257
Status published
Products (1)
Inaba Denki Sangyo Co., Ltd./CHOCO TEI WATCHER mini (IB-MCT001) all versions
Published Mar 31, 2025
Tracked Since Feb 18, 2026