← back
CVE-2025-66357

CVE-2025-66357

CVSS 6.9 MEDIUMEPSS 0.3%CWE-754
In short

The CHOCO TEI WATCHER mini device has a flaw where its video download feature can consume excessive resources when in certain communication states, potentially causing the device to slow down or become unresponsive.

Technical detail

CWE-754 identifies improper exception handling in the Video Download feature; when the device enters specific communication states, insufficient validation of exceptional conditions leads to abnormal resource consumption. An attacker with network access can exploit this to cause denial of service by triggering resource exhaustion.

Summary generated and translated by AI from the official description.
CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or exceptional conditions. When the Video Download feature is in a specific communication state, the product's resources may be consumed abnormally.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →