CVE-2025-53842
Severity CVSS v4.0:
MEDIUM
Type:
CWE-798
Use of Hard-coded Credentials
Publication date:
16/07/2025
Last modified:
16/07/2025
Description
Use of hard-coded credentials issue exists in ZWX-2000CSW2-HN prior to 0.3.19 and ZWX-2000CS2-HN firmware all versions. If this vulnerability is exploited, an attacker may tamper with the settings of the device by obtaining the credentials. This vulnerability is caused by an insufficient fix for CVE-2024-39838.
Impact
Base Score 4.0
6.80
Severity 4.0
MEDIUM
Base Score 3.x
4.50
Severity 3.x
MEDIUM