Critical severity10.0NVD Advisory· Published Nov 19, 2025· Updated Jun 17, 2026
CVE-2025-63224
CVE-2025-63224
Description
The Itel DAB Encoder (IDEnc build 25aec8d) is vulnerable to Authentication Bypass due to improper JWT validation across devices. Attackers can reuse a valid JWT token obtained from one device to authenticate and gain administrative access to any other device running the same firmware, even if the passwords and networks are different. This allows full compromise of affected devices.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:itel:idenc_firmware:-:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: build 25aec8d
Patches
Vulnerability mechanics
References
2- github.com/shiky8/my--cve-vulnerability-research/tree/main/CVE-2025-63224_Itel%20DAB%20Encoder%20Authentication%20BypassnvdExploitThird Party Advisory
- www.itel.itnvdProduct
News mentions
0No linked articles in our index yet.