Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-3759

Опубликовано: 08 мая 2025
Источник: nvd
EPSS Низкий

Описание

Endpoint /cgi-bin-igd/netcore_set.cgi which is used for changing device configuration is accessible without authentication. This poses a significant security threat allowing for e.g: administrator account hijacking or AP password changing. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 10%
0.00035
Низкий

Дефекты

CWE-306

Связанные уязвимости

github
9 месяцев назад

Endpoint /cgi-bin-igd/netcore_set.cgi which is used for changing device configuration is accessible without authentication. This poses a significant security threat allowing for e.g: administrator account hijacking or AP password changing. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 10%
0.00035
Низкий

Дефекты

CWE-306