CVE-2025-10880: Dingtian-Tech Dt-r002 Firmware
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
All versions of Dingtian DT-R002 are vulnerable to an Insufficiently Protected Credentials vulnerability that could allow an attacker to extract the proprietary "Dingtian Binary" protocol password by sending an unauthenticated GET request.
Affected products
- Dingtian-Tech Dt-r002 Firmware: affected versions not specified
Published 2025-09-25. Last modified 2026-06-17.