CVE-2025-7882 - CERT CVE
ID CVE-2025-7882
Sažetak A vulnerability was found in Mercusys MW301R 1.0.2 Build 190726 Rel.59423n. It has been rated as problematic. This issue affects some unknown processing of the component Login. The manipulation leads to improper restriction of excessive authentication attempts. The attack can only be initiated within the local network. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Reference
CVSS
Base: 1.8
Impact: 2.9
Exploitability:3.2
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL NONE
CVSS vektor AV:A/AC:H/Au:N/C:N/I:P/A:N
Zadnje važnije ažuriranje 20-07-2025 - 11:15
Objavljeno 20-07-2025 - 11:15