CNNVD-202509-4428 Information

CNNVD ID

CNNVD-202509-4428

CVE-2025-11134

  • CNNVD Published: 2025-09-29

Description (Chinese)

Cudy TR1200是中国Cudy公司的一款路由器。 Cudy TR1200 1.16.3-20230804-164635版本存在代码注入漏洞,该漏洞源于对文件/cgi-bin/luci/admin/network/wireless/config中参数SSID的错误操作,可能导致跨站脚本攻击。

Description (English)

Cuddy TR1200 is a router for Cuddy China. Cudy TR1200 1.16.3-2030804-164635 has a code-infusion loophole, which stems from an error in the SID parameter in document/cgi-bin/luci/admin/network/wireless/config, which may result in a cross-site script attack.

Hazard Level

Critical

Vulnerability Type

代码注入

Affected Vendor

Cudy

Published

2025-09-29

Last Modified

2026-02-24

References

https://github.com/blackcloud411/Cudy_vuln/blob/main/CUDY_TR1200_XSS_Report.docx https://vuldb.com/?ctiid.326211 https://vuldb.com/?id.326211 https://vuldb.com/?submit.656886

Share on: