CVE-2025-22941

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Mar 31, 2025
Updated: Apr 1, 2025
CWE ID 77

Summary

CVE-2025-22941 is a command injection vulnerability affecting the Adtran 411 ONT L80.00.0011.M2 web interface. Successful exploitation enables attackers to escalate privileges and execute arbitrary commands with root access, posing a significant security risk. The vulnerability can be exploited remotely, making it crucial for users to apply the available patch promptly to mitigate potential threats. Unpatched devices may be susceptible to unauthorized system takeover and data theft.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share