CNNVD-202509-3564 Information

CNNVD ID

CNNVD-202509-3564

CVE-2025-57602

  • CNNVD Published: 2025-09-22

Description (Chinese)

Aikaan IoT management platform是印度Aikaan公司的一个管理平台。 AiKaan IoT management platform存在安全漏洞,该漏洞源于proxyuser账户加固不足和使用了共享的硬编码SSH私钥,可能导致远程代码执行、信息泄露和权限提升。

Description (English)

Aikaan IoT Management Platform is a management platform for the Indian company Aikaan. There is a security loophole in the AiKaan IoT management platform, which stems from inadequate consolidation of the proxyuser account and the use of shared hard-coded SSH private keys, which may result in remote code execution, information leaking and enhanced access.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Aikaan

Published

2025-09-22

Last Modified

2026-02-24

References

https://github.com/Shubhangborkar/aikaan-vulnerabilities/blob/main/cve2-proxyuser-shell.md https://access.redhat.com/security/cve/cve-2025-57602

Share on: