CVE-2025-47423 describes a directory traversal vulnerability in Personal Weather Station Dashboard 12_lts, allowing unauthenticated remote attackers to read arbitrary files, including sensitive data like private SSL keys. This medium-severity vulnerability has a CVSS score of 5.8, indicating a network-based attack with low complexity and a potential for low confidentiality impact. While there is no evidence of active exploitation or public Metasploit/ExploitDB modules, Nuclei templates exist, and the vulnerability has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Pwsdashboard | Personal Weather Station Dashboard | 12_ltsCNA affecteddefault unknown |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.