CVE-2025-52376

An authentication bypass vulnerability in the /web/um_open_telnet.cgi endpoint in Nexxt Solutions NCM-X1800 Mesh Router firmware UV1.2.7 and below, allowing an attacker to remotely enable the Telnet service without authentication, bypassing security controls. The Telnet server is then accessible with hard-coded credentials, allowing attackers to gain administrative shell access and execute arbitrary commands on the device.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de omisión de autenticación en el endpoint /web/um_open_telnet.cgi del router de malla Nexxt Solutions NCM-X1800 con firmware UV1.2.7 y anteriores permite a un atacante habilitar remotamente el servicio Telnet sin autenticación, evadiendo así los controles de seguridad. El servidor Telnet es entonces accesible con credenciales predefinidas, lo que permite a los atacantes obtener acceso administrativo al shell y ejecutar comandos arbitrarios en el dispositivo.

15 Jul 2025, 15:15

Type Values Removed Values Added
CWE CWE-798
CWE-287
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

15 Jul 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-15 14:15

Updated : 2026-06-17 09:36


NVD link : CVE-2025-52376

Mitre link : CVE-2025-52376

CVE.ORG link : CVE-2025-52376


JSON object : View

Products Affected

No product.

CWE
CWE-287

Improper Authentication

CWE-798

Use of Hard-coded Credentials