CVE-2025-59408
HIGHFlock Safety Bravo Compute Box Firmware BRAVO_00.00_local_20241017 - Use of a Broken or Risky Cryptographic Algorithm
Title source: llmDescription
Flock Safety Bravo Edge AI Compute Device BRAVO_00.00_local_20241017 ships with Secure Boot disabled. This allows an attacker to flash modified firmware with no cryptographic protections.
References (4)
Core 4
Core References
Exploit, Third Party Advisory
https://gainsec.com/2025/09/19/root-from-the-coop-device-3-root-shell-on-flock-safetys-bravo-compute-box/
Scores
CVSS v3
7.3
EPSS
0.0023
EPSS Percentile
13.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-327
Status
published
Products (1)
flocksafety/bravo_compute_box_firmware
Published
Sep 25, 2025
Tracked Since
Feb 18, 2026