CVE-2025-36729

A non-primary administrator user with admin rights to the web interface but without shell access permissions can display configuration of the device including the master admin password. This vulnerability also allows the user to give themselves shell access with the root gid.
Configurations

No configuration.

History

No history.

Information

Published : 2025-08-26 17:15

Updated : 2025-08-29 16:22


NVD link : CVE-2025-36729

Mitre link : CVE-2025-36729

CVE.ORG link : CVE-2025-36729


JSON object : View

Products Affected

No product.

CWE
CWE-269

Improper Privilege Management