CVE-2025-22940

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Mar 31, 2025
Updated: Apr 1, 2025
CWE ID 284

Summary

CVE-2025-22940 is a critical access control vulnerability in Adtran 411 ONT L80.00.0011.M2. This issue enables unauthorized attackers to gain administrative privileges by arbitrarily setting the admin password, potentially leading to serious security consequences. The vulnerability arises due to insufficient authentication checks, allowing attackers to bypass access controls. Organizations using this Adtran model should apply the available patch as soon as possible to mitigate the risk. Unsecured access to admin passwords can result in full system compromise, underscoring the importance of addressing this vulnerability promptly.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share