CVE-2025-0592

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Feb 14, 2025
CWE ID 924

Summary

CVE-2025-0592 is a vulnerability that poses a risk to devices with inadequate protection against manipulated firmware files. This issue permits a remote, low-privileged attacker to execute arbitrary shell commands by skillfully crafting and uploading a malicious firmware file to the targeted device. Successful exploitation could result in significant security compromises, underscoring the need for prompt patching and strengthened defensive measures.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share