A vulnerability was determined in Telesquare TLR-2005KSH 1.2.4. The affected element is an unknown function of the file /cgi-bin/internet.cgi?Command=lanCfg. Executing manipulation of the argument Hostname can lead to command injection. The attack may be performed from a remote location. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
References
Configurations
Configuration 1 (hide)
AND |
|
History
11 Sep 2025, 12:41
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/lin-3-start/lin-cve/blob/main/Telesquare%20Tlr-2005Ksh/Telesquare%20Tlr-2005Ksh%E5%AD%98%E5%9C%A8%E5%91%BD%E4%BB%A4%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E.md - Exploit, Third Party Advisory | |
References | () https://github.com/lin-3-start/lin-cve/blob/main/Telesquare%20Tlr-2005Ksh/Telesquare%20Tlr-2005Ksh%E5%AD%98%E5%9C%A8%E5%91%BD%E4%BB%A4%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E.md#3poc - Exploit, Third Party Advisory | |
References | () https://vuldb.com/?ctiid.321779 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.321779 - Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?submit.636414 - Third Party Advisory, VDB Entry | |
CPE | cpe:2.3:h:telesquare:tlr-2005ksh:-:*:*:*:*:*:*:* cpe:2.3:o:telesquare:tlr-2005ksh_firmware:1.2.4:*:*:*:*:*:*:* |
|
First Time |
Telesquare
Telesquare tlr-2005ksh Firmware Telesquare tlr-2005ksh |
29 Aug 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/lin-3-start/lin-cve/blob/main/Telesquare%20Tlr-2005Ksh/Telesquare%20Tlr-2005Ksh%E5%AD%98%E5%9C%A8%E5%91%BD%E4%BB%A4%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E.md - | |
References | () https://github.com/lin-3-start/lin-cve/blob/main/Telesquare%20Tlr-2005Ksh/Telesquare%20Tlr-2005Ksh%E5%AD%98%E5%9C%A8%E5%91%BD%E4%BB%A4%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E.md#3poc - |
29 Aug 2025, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-29 02:15
Updated : 2025-09-11 12:41
NVD link : CVE-2025-9603
Mitre link : CVE-2025-9603
CVE.ORG link : CVE-2025-9603
JSON object : View
Products Affected
telesquare
- tlr-2005ksh_firmware
- tlr-2005ksh