Back to search
CVE-2025-10285
Published: Dec 4, 2025
Modified: Dec 5, 2025
PUBLISHED
Description
The web interface of the Silicon Labs Simplicity Device Manager is exposed publicly and can be used to extract the NTLMv2 hash which an attacker could use to crack the user's domain password.
| Vendor | Product | Versions |
|---|---|---|
silabs.com | Simplicity Studio V6 | affected 0 - < 0.100.18 |
Weaknesses (CWE)
References
https://community.silabs.com/a45Vm0000003UcfIAE
vendor-advisory
permissions-required
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now