← Back

CVE-2025-36729

nvd nist
Published: Aug 26, 2025Modified: Aug 29, 2025

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: vulnreport@tenable.com (Secondary)

Description

A non-primary administrator user with admin rights to the web interface but without shell access permissions can display configuration of the device including the master admin password. This vulnerability also allows the user to give themselves shell access with the root gid.

References (1)

Timeline

No history available yet.