CVE-2025-9806 - CERT CVE
ID CVE-2025-9806
Sažetak A vulnerability was determined in Tenda F1202 1.2.0.9/1.2.0.14/1.2.0.20. Impacted is an unknown function of the file /etc_ro/shadow of the component Administrative Interface. This manipulation with the input Fireitup causes hard-coded credentials. The attack can only be executed locally. A high degree of complexity is needed for the attack. The exploitability is considered difficult. The exploit has been publicly disclosed and may be utilized.
Reference
CVSS
Base: 0.8
Impact: 2.9
Exploitability:1.2
Pristup
VektorSloženostAutentikacija
LOCAL HIGH MULTIPLE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL NONE NONE
CVSS vektor AV:L/AC:H/Au:M/C:P/I:N/A:N
Zadnje važnije ažuriranje 31-12-2025 - 00:48
Objavljeno 02-09-2025 - 01:15