216.73.216.197

CVE-2025-48415

· Published 21/05/2025 13:16 · Modified 21/05/2025 20:24

Labels: CVE-2025-48415 2025-05-21551230f0-3615-47bd-b7cc-93e92e730bbfCVE-2025-48415CWE-749

Essential information

Published
21/05/2025 13:16
Modified
21/05/2025 20:24
Author
Creator
CVSS
6.2 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

CVSS metrics

Description

A USB backdoor feature can be triggered by attaching a USB drive that contains specially crafted "salia.ini" files. The .ini file can contain several "commands" that could be exploited by an attacker to export or modify the device configuration, enable an SSH backdoor  or perform other administrative actions. Ultimately, this backdoor also allows arbitrary execution of OS commands.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
551230f0-3615-47bd-b7cc-93e92e730bbf
NVD
View on NVD

Affected products (CPE)

ProductCPE
* / * cpe:2.3:a:*:*:*:*:*:*:*:*:*:*:*
* / * cpe:2.3:o:*:*:*:*:*:*:*:*:*:*:*

References