216.73.217.22

CVE-2025-8890

· Published 27/11/2025 14:15 · Modified 01/12/2025 15:39

Labels: CVE-2025-8890 2025-11-27CVE-2025-8890CWE-78[email protected]

Essential information

Published
27/11/2025 14:15
Modified
01/12/2025 15:39
Author
Creator
CVSS
9.3 CRITICAL (v3) 9.3 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Firmware in SDMC NE6037 routers prior to version 7.1.12.2.44 has a network diagnostics tool vulnerable to a shell command injection attacks. In order to exploit this vulnerability, an attacker has to log in to the router's administrative portal, which by default is reachable only via LAN ports.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

References