216.73.216.133

CVE-2025-9806

· Published 02/09/2025 01:15 · Modified 02/09/2025 15:55

Labels: CVE-2025-9806 2025-09-02CVE-2025-9806CWE-259[email protected]

Essential information

Published
02/09/2025 01:15
Modified
02/09/2025 15:55
Author
Creator
CVSS
1.8 LOW (v3) 1.8 LOW (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability was determined in Tenda F1202 1.2.0.9/1.2.0.14/1.2.0.20. Impacted is an unknown function of the file /etc_ro/shadow of the component Administrative Interface. This manipulation with the input Fireitup causes hard-coded credentials. The attack can only be executed locally. A high degree of complexity is needed for the attack. The exploitability is considered difficult. The exploit has been publicly disclosed and may be utilized.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
tenda / f1202 cpe:2.3:a:tenda:f1202:1.2.0.9:*:*:*:*:*:*:*
tenda / f1202 cpe:2.3:a:tenda:f1202:1.2.0.14:*:*:*:*:*:*:*
tenda / f1202 cpe:2.3:a:tenda:f1202:1.2.0.20:*:*:*:*:*:*:*

References