CVE Feed

    Dashboard / CVE / CVE-2025-57432

    CVE-2025-57432

    Blackmagic Web Presenter version 3.3 exposes a Telnet service on port 9977 that accepts unauthenticated commands. This service allows remote attackers to manipulate stream settings, including changing video modes and possibly altering device functionality. No credentials or authentication mechanisms are required to interact with the Telnet interface.

    Published:Sep 22, 2025
    Last Modified:Oct 14, 2025
    EPS:Sep 22, 2025
    EPSS Score:0.00167
    CVSS Score:9.8

    Affected Products

    Vendor
    Blackmagic
    Product
    Web Presenter
    Vendor
    Blackmagicdesign
    Product
    Web Presenter 4k
    Vendor
    Blackmagicdesign
    Product
    Web Presenter 4k Firmware
    Vendor
    Blackmagicdesign
    Product
    Web Presenter Hd
    Vendor
    Blackmagicdesign
    Product
    Web Presenter Hd Firmware

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High