CVE-2023-25437: Vtech VCS754A Firmware

High severity, CVSS 8.8. EPSS: 14.1% chance of exploitation in the next 30 days.

An issue was discovered in vTech VCS754 version 1.1.1.A before 1.1.1.H, allows attackers to gain escalated privileges and gain sensitive information due to cleartext passwords passed in the raw HTML.

Affected products

  • Vtech VCS754A Firmware: from 1.1.1.a, before 1.1.1.h (fixed in 1.1.1.h)

Published 2023-04-27. Last modified 2026-06-17.