CVE-2025-9577

A security flaw has been discovered in TOTOLINK X2000R up to 2.0.0. The affected element is an unknown function of the file /etc/shadow.sample of the component Administrative Interface. The manipulation results in use of default credentials. Attacking locally is a requirement. Attacks of this nature are highly complex. The exploitability is described as difficult. The exploit has been released to the public and may be exploited.
Configurations

No configuration.

History

28 Aug 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-28 19:15

Updated : 2025-08-29 16:24


NVD link : CVE-2025-9577

Mitre link : CVE-2025-9577

CVE.ORG link : CVE-2025-9577


JSON object : View

Products Affected

No product.

CWE