CVE-2025-13315 - Unauthenticated log access in Twonky Server
CVE ID : CVE-2025-13315
Published : Nov. 19, 2025, 6:15 p.m. | 33 minutes ago
Description : Twonky Server 8.5.2 on Linux and Windows is vulnerable to an access control flaw. An unauthenticated attacker can bypass web service API authentication controls to leak a log file and read the administrator's username and encrypted password.
Severity: 9.3 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Nov. 19, 2025, 6:15 p.m. | 33 minutes ago
Description : Twonky Server 8.5.2 on Linux and Windows is vulnerable to an access control flaw. An unauthenticated attacker can bypass web service API authentication controls to leak a log file and read the administrator's username and encrypted password.
Severity: 9.3 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...