← Back to browse · API

CVE-2025-64075

Severity
CRITICAL
CVSS
10.0
EPSS
0.00703
Risk score
40.25
CISA KEV
No
PoC
No
Published
2026-02-11
Modified
2026-02-11
First seen
2026-08-07
Aliases
EUVD-2025-206930, GHSA-47FM-95XJ-VFVG
Products
n/a:n/a n/a
Sources
euvd EUVD-2025-206930

Description

A path traversal vulnerability in the check_token function of Shenzhen Zhibotong Electronics ZBT WE2001 23.09.27 allows remote attackers to bypass authentication and perform administrative actions by supplying a crafted session cookie value.

References