CVE-2025-13293

A hard-coded or default root account credential in TBEA TLogger V2.1.0.0B0.0.0.0 allows an unauthenticated remote attacker to obtain root-level access to the device via the exposed SSH service. The root password can be recovered from the password hash stored in /etc/shadow and used to authenticate to the SSH service. Successful exploitation provides full administrative control of the affected device.
CVSS

No CVSS.

References
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-10 20:17

Updated : 2026-09-03 16:41


NVD link : CVE-2025-13293

Mitre link : CVE-2025-13293

CVE.ORG link : CVE-2025-13293


JSON object : View

Products Affected

No product.

CWE
CWE-798

Use of Hard-coded Credentials