What is CVE-2025-15680?
The TBEA TLogger V2.1.0.0B0.0.0.0 device exposes a UART interface on its circuit board without adequate protection. A physically proximate attacker can connect to this interface and observe the boot process and runtime debug output, leading to the disclosure of sensitive information such as operating system details. Physical security measures should be implemented to mitigate this vulnerability.
Azərbaycanca: TBEA TLogger V2.1.0.0B0.0.0.0 cihazının dövrə lövhəsindəki UART interfeysi kifayət qədər qorunmur. Fiziki olaraq yaxınlaşa bilən təcavüzkar bu interfeysə qoşularaq cihazın yüklənmə prosesini və runtime debug çıxışını müşahidə edə bilər. Bu zəiflik əməliyyat sistemi detalları kimi həssas məlumatların ifşasına səbəb olur və cihazı fiziki təhlükəsizliklə qorumaq tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-200
FAQ1
What condition must an attacker meet to exploit CVE-2025-15680 on the TBEA TLogger device?
The attacker must be physically proximate to the device, as the vulnerability requires physical connection to the UART interface on the circuit board.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.