The SIMCom SIM7600G modem supports an undocumented AT command, which allows an attacker to execute system commands with root permission on the modem. An attacker needs either physical access or remote shell access to a device that interacts directly with the modem via AT commands.
References
Link | Resource |
---|---|
https://r.sec-consult.com/simcom |
Configurations
No configuration.
History
11 Jun 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.8 |
11 Jun 2025, 09:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-06-11 09:15
Updated : 2025-06-12 16:06
NVD link : CVE-2025-26412
Mitre link : CVE-2025-26412
CVE.ORG link : CVE-2025-26412
JSON object : View
Products Affected
No product.
CWE
CWE-912
Hidden Functionality