{"document":{"acknowledgments":[{"organization":"CERTVDE","summary":"Coordination","urls":["https://certvde.com/en/"]}],"category":"csaf_security_advisory","csaf_version":"2.0","distribution":{"tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"en-GB","notes":[{"category":"summary","text":"Motherbox 3 with firmware 1.44 to 1.48 allows an unauthenticated remote attacker read-only access to the internal DB with measurement values from other W&T sensor devices. ","title":"Summary"},{"category":"description","text":"When logging into the internal database of the Motherbox 3 the user can get access without password protection. This enables the unprotected read-only access to the stored measurement data.","title":"Impact"},{"category":"description","text":"Update the Motherbox 3 firmware to version 1.49.","title":"Remediation"}],"publisher":{"category":"vendor","contact_details":"security@wut.de","name":"Wiesemann & Theis GmbH","namespace":"https://www.wut.de"},"references":[{"category":"self","summary":"VDE-2025-067: Wiesemann & Theis: Motherbox 3 allows unauthenticated read-only DB access - HTML","url":"https://certvde.com/en/advisories/VDE-2025-067/"},{"category":"self","summary":"VDE-2025-067: Wiesemann & Theis: Motherbox 3 allows unauthenticated read-only DB access - CSAF","url":"https://wut.csaf-tp.certvde.com/.well-known/csaf/white/2025/vde-2025-067.json"},{"category":"external","summary":"CERT@VDE Security Advisories for Wiesemann & Theis","url":"https://certvde.com/de/advisories/vendor/wut/"}],"title":"Wiesemann & Theis: Motherbox 3 allows unauthenticated read-only DB access","tracking":{"aliases":["VDE-2025-067"],"current_release_date":"2026-07-03T10:00:00.000Z","generator":{"date":"2026-07-03T06:54:30.956Z","engine":{"name":"Secvisogram","version":"2.5.44"}},"id":"VDE-2025-067","initial_release_date":"2025-08-10T10:00:00.000Z","revision_history":[{"date":"2025-08-10T10:00:00.000Z","number":"1.0.0","summary":"Initial revision"},{"date":"2025-08-25T10:00:00.000Z","number":"1.1.0","summary":"Changed CVE Score from C:L to C:H and changed in the CVE Description the word \"grants\" to \"get\""},{"date":"2026-07-03T10:00:00.000Z","number":"1.1.1","summary":"Fixed Vendor Variable in Product tree"}],"status":"final","version":"1.1.1"}},"product_tree":{"branches":[{"branches":[{"branches":[{"category":"product_name","name":"Motherbox 3","product":{"name":"Motherbox 3","product_id":"CSAFPID-11001","product_identification_helper":{"model_numbers":["50504"]}}}],"category":"product_family","name":"Hardware"},{"branches":[{"category":"product_version_range","name":"1.44<=1.48","product":{"name":"Firmware 1.44<1.48","product_id":"CSAFPID-21001"}},{"category":"product_version","name":"1.49","product":{"name":"Firmware 1.49","product_id":"CSAFPID-22001"}}],"category":"product_family","name":"Firmware"}],"category":"vendor","name":"Wiesemann & Theis"}],"relationships":[{"category":"installed_on","full_product_name":{"name":"Firmware 1.44<=1.48 installed on Motherbox 3","product_id":"CSAFPID-31001"},"product_reference":"CSAFPID-21001","relates_to_product_reference":"CSAFPID-11001"},{"category":"installed_on","full_product_name":{"name":"Firmware 1.49 installed on Motherbox 3","product_id":"CSAFPID-32001"},"product_reference":"CSAFPID-22001","relates_to_product_reference":"CSAFPID-11001"}]},"vulnerabilities":[{"cve":"CVE-2025-41689","cwe":{"id":"CWE-306","name":"Missing Authentication for Critical Function"},"notes":[{"audience":"all","category":"description","text":"An unauthenticated remote attacker can get access without password protection to the affected device. This enables the unprotected read-only access to the stored measurement data.","title":"Vulnerability Description"}],"product_status":{"fixed":["CSAFPID-32001"],"known_affected":["CSAFPID-31001"]},"remediations":[{"category":"mitigation","details":"Access to the database should be limited to trustworthy networks or peers. ","product_ids":["CSAFPID-11001"]},{"category":"vendor_fix","details":"Update the Motherbox 3 firmware to version 1.49.\n","product_ids":["CSAFPID-11001"]}],"scores":[{"cvss_v3":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"NONE","baseScore":7.5,"baseSeverity":"HIGH","confidentialityImpact":"HIGH","environmentalScore":7.5,"environmentalSeverity":"HIGH","integrityImpact":"NONE","privilegesRequired":"NONE","scope":"UNCHANGED","temporalScore":7.5,"temporalSeverity":"HIGH","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","version":"3.1"},"products":["CSAFPID-31001"]}],"title":"CVE-2025-41689"}]}