CVE-2025-3759 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Endpoint /cgi-bin-igd/netcore_set.cgi which is used for changing device configuration is accessible without authentication. This poses a significant security th…
High CVSS: 8.7

CVE-2025-3759

Endpoint /cgi-bin-igd/netcore_set.cgi which is used for changing device configuration is accessible without authentication. This poses a significant security threat allowing for e.g: administrator account hijacking or AP password changing.
The vendor was contacted early about this disclosure but did not respond in any way.
Vendor
-
Product
-
CWE
CWE-306
Yayın Tarihi
2025-05-08 10:15:18
Güncelleme
2025-05-08 14:39:09
Source Identifier
cvd@cert.pl
KEV Date Added
-

Kategoriler

Referanslar