๐Ÿ” CVE Alert

CVE-2025-1496

MEDIUM 6.5

Improper Authentication in BG-TEK's Coslat Hotspot

CVSS Score
6.5
EPSS Score
0.1%
EPSS Percentile
33th

Improper Restriction of Excessive Authentication Attempts vulnerability in BG-TEK Coslat Hotspot allows Password Brute Forcing, Authentication Abuse. This issue affects Coslat Hotspot: before 6.26.0.R.20250227.

CWE CWE-307
Vendor bg-tek
Product coslat hotspot
Published Mar 20, 2025
Last Updated Jun 6, 2026
Stay Ahead of the Next One

Get instant alerts for bg-tek coslat hotspot

Be the first to know when new medium vulnerabilities affecting bg-tek coslat hotspot are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
Low
Availability
None

Affected Versions

BG-TEK / Coslat Hotspot
0 < 6.26.0.r.20250227

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
coslat.com: https://www.coslat.com/tr/blog/28-02-2025-guncelleme usom.gov.tr: https://www.usom.gov.tr/bildirim/tr-25-0075 siberguvenlik.gov.tr: https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-25-0075

Credits

Ramin KARIMKHANI Privia Security Inc.