CVE-2025-41651
Severity CVSS v4.0:
Pending analysis
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
27/05/2025
Last modified:
28/05/2025
Description
Due to missing authentication on a critical function of the devices an unauthenticated remote attacker can execute arbitrary commands, potentially enabling unauthorized upload or download of configuration files and leading to full system compromise.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL



