216.73.216.133

CVE-2025-64055

· Published 03/12/2025 21:15 · Modified 10/12/2025 21:42

Labels: CVE-2025-64055 2025-12-03CVE-2025-64055CWE-287[email protected]

Essential information

Published
03/12/2025 21:15
Modified
10/12/2025 21:42
Author
Creator
CVSS
9.8 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

An issue was discovered in Fanvil x210 V2 2.12.20 allowing unauthenticated attackers on the local network to access administrative functions of the device (e.g. file upload, firmware update, reboot...) via a crafted authentication bypass.

NVD status

Status
Undergoing Analysis — CVE is currently being analyzed by NVD staff, this process results in association of reference link tags, CVSS scores, CWE association, and CPE applicability statements.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
tenda / x210 firmware cpe:2.3:o:tenda:x210_firmware:2.12.20:*:*:*:*:*:*:*
tenda / x210 cpe:2.3:h:tenda:x210:2.0:*:*:*:*:*:*:*

References