CVE-2025-65882

An issue was discovered in openmptcprouter thru 0.64 in file common/package/utils/sys-upgrade-helper/src/tools/sysupgrade.c in function create_xor_ipad_opad allowing attackers to potentially write arbitrary files or execute arbitrary commands.
Configurations

Configuration 1 (hide)

cpe:2.3:a:openmptcprouter:openmptcprouter:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-09 19:15

Updated : 2026-01-02 21:30


NVD link : CVE-2025-65882

Mitre link : CVE-2025-65882

CVE.ORG link : CVE-2025-65882


JSON object : View

Products Affected

openmptcprouter

  • openmptcprouter
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')