CVE-2025-5379

Severity CVSS v4.0:
MEDIUM
Type:
CWE-259 Use of Hard-coded Password
Publication date:
31/05/2025
Last modified:
02/06/2025

Description

A vulnerability classified as critical was found in NuCom NC-WR744G 8.5.5 Build 20200530.307. This vulnerability affects unknown code of the component Console Application. The manipulation of the argument CMCCAdmin/useradmin/CUAdmin leads to hard-coded credentials. The attack can be initiated remotely. The vendor was contacted early about this disclosure but did not respond in any way.