Wiesemann & Theis Motherbox 3 Unauthenticated Read-Only Database Access Vulnerability

Vulnerability

A vulnerability in Wiesemann & Theis Motherbox 3 firmware versions 1.44 through 1.48 allows unauthenticated remote access to the internal database. This access is granted without password protection, enabling unprotected read-only retrieval of measurement data from other W&T sensor devices.

Impact

Exploitation of this vulnerability allows for unauthenticated read-only access to the internal database, where measurement values from other W&T sensor devices can be accessed.

Remediation

Users are advised to update the Motherbox 3 firmware to version 1.49.

Added: Aug 19, 2025, 9:17 AM
Updated: Aug 19, 2025, 9:17 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
7.4
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.