CVE-2025-63208

An issue was discovered in bridgetech VB288 Objective QoE Content Extractor, firmware version 5.6.0-8, allowing attackers to gain sensitive information such as administrator passwords via the /probe/core/setup/passwd endpoint.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:bridgetech:vb288_firmware:5.6.0-8:*:*:*:*:*:*:*
cpe:2.3:h:bridgetech:vb288:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-11-19 18:15

Updated : 2026-01-15 21:52


NVD link : CVE-2025-63208

Mitre link : CVE-2025-63208

CVE.ORG link : CVE-2025-63208


JSON object : View

Products Affected

bridgetech

  • vb288_firmware
  • vb288
CWE
CWE-312

Cleartext Storage of Sensitive Information