An admin user can gain unauthorized write access to the /etc/rc.local file on the device, which is executed on a system boot.
References
Link | Resource |
---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-25-126-02 | Third Party Advisory US Government Resource |
https://www.milesight.com/iot/resources/download-center/#firmware-ug65 | Release Notes |
Configurations
Configuration 1 (hide)
AND |
|
History
23 Jun 2025, 15:02
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:milesight:ug65-868m-ea:-:*:*:*:*:*:*:* cpe:2.3:o:milesight:ug65-868m-ea_firmware:*:*:*:*:*:*:*:* |
|
References | () https://www.cisa.gov/news-events/ics-advisories/icsa-25-126-02 - Third Party Advisory, US Government Resource | |
References | () https://www.milesight.com/iot/resources/download-center/#firmware-ug65 - Release Notes | |
First Time |
Milesight
Milesight ug65-868m-ea Milesight ug65-868m-ea Firmware |
08 May 2025, 14:39
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
07 May 2025, 21:16
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-07 21:16
Updated : 2025-06-23 15:02
NVD link : CVE-2025-4043
Mitre link : CVE-2025-4043
CVE.ORG link : CVE-2025-4043
JSON object : View
Products Affected
milesight
- ug65-868m-ea
- ug65-868m-ea_firmware
CWE
CWE-1274
Insufficient Protections on the Volatile Memory Containing Boot Code