CVE-2025-24852

MEDIUM

CHOCO TEI WATCHER mini - Info Disclosure

Title source: llm

Description

Storing passwords in a recoverable format issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If this issue is exploited, an attacker who can access the microSD card used on the product may obtain the product login password.

Scores

CVSS v3 4.6
EPSS 0.0013
EPSS Percentile 31.8%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-257
Status draft

Timeline

Published Mar 31, 2025
Tracked Since Feb 18, 2026