CVE-2025-59104

N/A Unknown
Published: January 26, 2026 Modified: January 26, 2026
View on NVD

Description

With physical access to the device and enough time an attacker is able to solder test leads to the debug footprint (or use the 6-Pin tag-connect cable). Thus, the attacker gains access to the bootloader, where the kernel command line can be changed. An attacker is able to gain a root shell through this vulnerability.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
https://r.sec-consult.com/dkaccess
Source: 551230f0-3615-47bd-b7cc-93e92e730bbf
https://r.sec-consult.com/dormakaba
Source: 551230f0-3615-47bd-b7cc-93e92e730bbf
https://www.dormakabagroup.com/en/security-advisories
Source: 551230f0-3615-47bd-b7cc-93e92e730bbf

3 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
0.0%
6th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)