216.73.216.109

CVE-2025-36747

· Published 13/12/2025 16:16 · Modified 15/12/2025 18:22

Labels: CVE-2025-36747 2025-12-13CVE-2025-36747[email protected]

Essential information

Published
13/12/2025 16:16
Modified
15/12/2025 18:22
Author
Creator
CVSS
9.4 CRITICAL (v3) 9.4 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

ShineLan-X contains a set of credentials for an FTP server was found within the firmware, allowing testers to establish an insecure FTP connection with the server. This may allow an attacker to replace legitimate files being deployed to devices with their own malicious versions, since the firmware signature verification is not enforced.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

References