CVE Feed

    Dashboard / CVE / CVE-2025-63209

    CVE-2025-63209

    The ELCA Star Transmitter Remote Control firmware 1.25 for STAR150, BP1000, STAR300, STAR2000, STAR1000, STAR500, and possibly other models, contains an information disclosure vulnerability allowing unauthenticated attackers to retrieve admin credentials and system settings via an unprotected /setup.xml endpoint. The admin password is stored in plaintext under the <p05> XML tag, potentially leading to remote compromise of the transmitter system.

    Published:Nov 19, 2025
    Last Modified:Jan 15, 2026
    EPS:Nov 19, 2025
    EPSS Score:0.00083
    CVSS Score:7.5

    Affected Products

    Vendor
    Elca
    Product
    Bp1000
    Vendor
    Elca
    Product
    Star1000
    Vendor
    Elca
    Product
    Star150
    Vendor
    Elca
    Product
    Star2000
    Vendor
    Elca
    Product
    Star300
    Vendor
    Elca
    Product
    Star500
    Vendor
    Elcaradio
    Product
    Bp1000
    Vendor
    Elcaradio
    Product
    Bp1000 Firmware
    Vendor
    Elcaradio
    Product
    Star1000
    Vendor
    Elcaradio
    Product
    Star1000 Firmware
    Vendor
    Elcaradio
    Product
    Star150
    Vendor
    Elcaradio
    Product
    Star150 Firmware
    Vendor
    Elcaradio
    Product
    Star2000
    Vendor
    Elcaradio
    Product
    Star2000 Firmware
    Vendor
    Elcaradio
    Product
    Star300
    Vendor
    Elcaradio
    Product
    Star300 Firmware
    Vendor
    Elcaradio
    Product
    Star500
    Vendor
    Elcaradio
    Product
    Star500 Firmware

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High