{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-11T07:16:56.849","vulnerabilities":[{"cve":{"id":"CVE-2025-41712","sourceIdentifier":"info@cert.vde.com","published":"2026-03-10T18:17:56.543","lastModified":"2026-04-27T19:22:08.623","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"An unauthenticated remote attacker who tricks a user to upload a manipulated HTML file can get access to sensitive information on the device. This is a result of incorrect permission assignment for the web server."},{"lang":"es","value":"Un atacante remoto no autenticado que engaña a un usuario para que suba un archivo HTML manipulado puede obtener acceso a información sensible en el dispositivo. Esto es resultado de una asignación de permisos incorrecta para el servidor web."}],"metrics":{"cvssMetricV31":[{"source":"info@cert.vde.com","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","baseScore":6.5,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":2.8,"impactScore":3.6}]},"weaknesses":[{"source":"info@cert.vde.com","type":"Primary","description":[{"lang":"en","value":"CWE-732"}]}],"references":[{"url":"https://certvde.com/en/advisories/VDE-2025-079/","source":"info@cert.vde.com"},{"url":"https://certvde.com/en/advisories/VDE-2025-096/","source":"info@cert.vde.com"},{"url":"https://janitza.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-079.json","source":"info@cert.vde.com"},{"url":"https://weidmueller.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-096.json","source":"info@cert.vde.com"}]}}]}