CNNVD-202508-3718 Information

CNNVD ID

CNNVD-202508-3718

CVE-2025-9725

  • CNNVD Published: 2025-08-31

Description (Chinese)

Cudy LT500E是中国Cudy公司的一款无线路由器。 Cudy LT500E 2.3.12及之前版本存在安全漏洞,该漏洞源于固件在 /squashfs-root/etc/shadow 文件中使用硬编码密码。

Description (English)

Cuddy LT500E is a wireless router of Cuddy China. Cuddy LT500E 2.3.12 and previous versions have a security loophole, which stems from the use of hard-coded passwords in /squashfs-root/etc/shadow files.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Cudy

Published

2025-08-31

Last Modified

2026-02-24

References

https://github.com/XXRicardo/iot-cve/blob/main/CUDY/LT500E-R42-2.3.13.md#steps-to-reproduce https://vuldb.com/?submit.639346 https://vuldb.com/?id.322014 https://vuldb.com/?ctiid.322014 https://access.redhat.com/security/cve/cve-2025-9725 https://nvd.nist.gov/vuln/detail/CVE-2025-9725

Patch

https://www.cudy.com/pages/download-center/lt500e-1-0

Share on: