CVE-2025-13926
Received
Received - Intake
Packet Forgery via Network Sniffing in Contemporary Controls BASC 20T
Publication date: 2026-04-09
Last updated on: 2026-04-10
Assigner: ICS-CERT
Description
Description
An attacker could use data obtained by sniffing the network traffic to
forge packets in order to make arbitrary requests to Contemporary
Controls BASC 20T.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| contemporary_controls | basc_20t | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-807 | The product uses a protection mechanism that relies on the existence or values of an input, but the input can be modified by an untrusted actor in a way that bypasses the protection mechanism. |