# CVE-2025-15680

## Summary

- **CVE ID:** CVE-2025-15680
- **Severity:** LOW
- **CVSS Score:** 2.4 (CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N)
- **CWE:** CWE-497
- **Published:** Aug 10, 2026
- **Last Modified:** Aug 12, 2026

## Description

TBEA TLogger V2.1.0.0B0.0.0.0 exposes a UART interface on the device's circuit board without sufficient protection. A physically proximate attacker can connect to the UART interface and observe the device boot process and runtime debug output. The disclosed information includes operating system details, software versions, network configuration, filesystem paths, and other implementation and debugging information that may assist an attacker in further compromising the device.

## Affected Products

- TBEA — TBEA TLogger (TBEA Communication Box 3rd Generation) (0)

## References

- [CNA](https://en.tbea.com/about.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.15%
- **EPSS Percentile:** 4.9

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._