{
    "dataType": "CVE_RECORD",
    "dataVersion": "5.1",
    "cveMetadata": {
        "cveId": "CVE-2025-9265",
        "assignerOrgId": "455daabc-a392-441d-aa46-37d35189897c",
        "state": "PUBLISHED",
        "assignerShortName": "NCSC.ch",
        "dateReserved": "2025-08-20T14:20:57.768Z",
        "datePublished": "2025-10-13T06:57:45.195Z",
        "dateUpdated": "2025-10-14T13:19:43.818Z"
    },
    "containers": {
        "cna": {
            "affected": [
                {
                    "collectionURL": "https://www.kiloview.com/en/support/download/n30-for-ndi/",
                    "defaultStatus": "affected",
                    "product": "NDI",
                    "vendor": "Kiloview",
                    "versions": [
                        {
                            "status": "affected",
                            "version": "2.02.246",
                            "versionType": "N30 Firmware"
                        }
                    ]
                }
            ],
            "credits": [
                {
                    "lang": "en",
                    "type": "finder",
                    "value": "Joakim Brandt - NRK (Norsk rikskringkasting AS)"
                },
                {
                    "lang": "en",
                    "type": "coordinator",
                    "value": "Louis Dumas"
                }
            ],
            "descriptions": [
                {
                    "lang": "en",
                    "supportingMedia": [
                        {
                            "base64": false,
                            "type": "text/html",
                            "value": "A broken authorization vulnerability in Kiloview NDI N30 allows a remote unauthenticated attacker to deactivate user verification, giving them access to state changing actions that should only be initiated by administrators<p>This issue affects \n\n Kiloview NDI N30\n\nand was fixed in Firmware version later than  2.02.0246\n\n</p>"
                        }
                    ],
                    "value": "A broken authorization vulnerability in Kiloview NDI N30 allows a remote unauthenticated attacker to deactivate user verification, giving them access to state changing actions that should only be initiated by administratorsThis issue affects \n\n Kiloview NDI N30\n\nand was fixed in Firmware version later than  2.02.0246"
                }
            ],
            "impacts": [
                {
                    "capecId": "CAPEC-22",
                    "descriptions": [
                        {
                            "lang": "en",
                            "value": "CAPEC-22 Exploiting Trust in Client"
                        }
                    ]
                },
                {
                    "capecId": "CAPEC-21",
                    "descriptions": [
                        {
                            "lang": "en",
                            "value": "CAPEC-21 Exploitation of Trusted Identifiers"
                        }
                    ]
                },
                {
                    "capecId": "CAPEC-115",
                    "descriptions": [
                        {
                            "lang": "en",
                            "value": "CAPEC-115: Authentication Bypass."
                        }
                    ]
                },
                {
                    "capecId": "CAPEC-151",
                    "descriptions": [
                        {
                            "lang": "en",
                            "value": "CAPEC-151 Identity Spoofing"
                        }
                    ]
                }
            ],
            "metrics": [
                {
                    "cvssV4_0": {
                        "Automatable": "NOT_DEFINED",
                        "Recovery": "NOT_DEFINED",
                        "Safety": "NOT_DEFINED",
                        "attackComplexity": "LOW",
                        "attackRequirements": "NONE",
                        "attackVector": "NETWORK",
                        "baseScore": 10,
                        "baseSeverity": "CRITICAL",
                        "privilegesRequired": "NONE",
                        "providerUrgency": "NOT_DEFINED",
                        "subAvailabilityImpact": "HIGH",
                        "subConfidentialityImpact": "HIGH",
                        "subIntegrityImpact": "HIGH",
                        "userInteraction": "NONE",
                        "valueDensity": "NOT_DEFINED",
                        "vectorString": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H",
                        "version": "4.0",
                        "vulnAvailabilityImpact": "HIGH",
                        "vulnConfidentialityImpact": "HIGH",
                        "vulnIntegrityImpact": "HIGH",
                        "vulnerabilityResponseEffort": "NOT_DEFINED"
                    },
                    "format": "CVSS",
                    "scenarios": [
                        {
                            "lang": "en",
                            "value": "GENERAL"
                        }
                    ]
                }
            ],
            "problemTypes": [
                {
                    "descriptions": [
                        {
                            "cweId": "CWE-346",
                            "description": "CWE-346 Origin Validation Error",
                            "lang": "en",
                            "type": "CWE"
                        }
                    ]
                },
                {
                    "descriptions": [
                        {
                            "cweId": "CWE-290",
                            "description": "CWE-290 Authentication Bypass by Spoofing",
                            "lang": "en",
                            "type": "CWE"
                        }
                    ]
                },
                {
                    "descriptions": [
                        {
                            "cweId": "CWE-287",
                            "description": "CWE-287 Improper Authentication",
                            "lang": "en",
                            "type": "CWE"
                        }
                    ]
                }
            ],
            "providerMetadata": {
                "orgId": "455daabc-a392-441d-aa46-37d35189897c",
                "shortName": "NCSC.ch",
                "dateUpdated": "2025-10-13T06:57:45.195Z"
            },
            "references": [
                {
                    "tags": [
                        "release-notes"
                    ],
                    "url": "https://www.kiloview.com/en/support/download/n30-firmware-downloadlatest/"
                }
            ],
            "source": {
                "discovery": "EXTERNAL"
            },
            "title": "API Authentication Bypass via Header Spoofing vulnerability in Kiloview NDI N30 Products",
            "x_generator": {
                "engine": "Vulnogram 0.2.0"
            }
        },
        "adp": [
            {
                "metrics": [
                    {
                        "other": {
                            "type": "ssvc",
                            "content": {
                                "timestamp": "2025-10-14T13:19:29.801041Z",
                                "id": "CVE-2025-9265",
                                "options": [
                                    {
                                        "Exploitation": "none"
                                    },
                                    {
                                        "Automatable": "yes"
                                    },
                                    {
                                        "Technical Impact": "total"
                                    }
                                ],
                                "role": "CISA Coordinator",
                                "version": "2.0.3"
                            }
                        }
                    }
                ],
                "title": "CISA ADP Vulnrichment",
                "providerMetadata": {
                    "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
                    "shortName": "CISA-ADP",
                    "dateUpdated": "2025-10-14T13:19:43.818Z"
                }
            }
        ]
    }
}