CVE-2025-41664

A low-privileged remote attacker could gain unauthorized access to critical resources, such as firmware and certificates, due to improper permission handling during the runtime of services (e.g., FTP/SFTP). This access could allow the attacker to escalate privileges and modify firmware.
Configurations

No configuration.

History

08 Sep 2025, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-08 07:15

Updated : 2025-09-08 16:25


NVD link : CVE-2025-41664

Mitre link : CVE-2025-41664

CVE.ORG link : CVE-2025-41664


JSON object : View

Products Affected

No product.

CWE
CWE-732

Incorrect Permission Assignment for Critical Resource