CVE-2025-41764
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/03/2026
Last modified:
09/03/2026
Description
Due to insufficient authorization enforcement, an unauthorized remote attacker can exploit the wwwupdate.cgi endpoint to upload and apply arbitrary updates.
Impact
Base Score 3.x
9.10
Severity 3.x
CRITICAL



