VYPR
Unrated severityNVD Advisory· Published Mar 4, 2026· Updated Mar 9, 2026

Suprema BioStar 2 Insecure Password Change

CVE-2025-41257

Description

Suprema’s BioStar 2 in version 2.9.11.6 allows users to set new password without providing the current one. Exploiting this flaw combined with other vulnerabilities can lead to unauthorized account access and potential system compromise.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Suprema/BioStar 2llm-create2 versions
    = 2.9.11.6+ 1 more
    • (no CPE)range: = 2.9.11.6
    • (no CPE)range: 2.9.11.6

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.