CVE-2025-61939
Unknown
Unknown - Not Provided
BaseFortify
Publication date: 2026-01-07
Last updated on: 2026-01-22
Assigner: ICS-CERT
Description
Description
An unused function in MicroServer can start a reverse SSH connection to a vendor registered domain, without mutual authentication. An attacker on the local network with admin access to the web server, and the ability to manipulate DNS responses, can redirect the SSH connection to an attacker controlled device.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| columbiaweather | weather_microserver_firmware | to MS_4.1_14142 (exc) |
| columbiaweather | weather_microserver | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-923 | The product establishes a communication channel to (or from) an endpoint for privileged or protected operations, but it does not properly ensure that it is communicating with the correct endpoint. |