CNNVD-202601-1453 Information

CNNVD ID

CNNVD-202601-1453

CVE-2025-67089

  • CNNVD Published: 2026-01-08

Description (Chinese)

GL-Inet GL-AXT1800是中国GL-Inet公司的一款WiFi6无线路由器。 GL-Inet GL-AXT1800 v4.6.8版本存在安全漏洞,该漏洞源于plugins.install_package RPC方法输入清理不当,可能导致执行任意命令。

Description (English)

GL-Inet GL-AXT1800 is a WiFi6 wireless router of the Chinese company GL-Inet. There is a security loophole in version GL-Int GL-AXT1800 v4.6.8, which stems from the improper clean-up of the plugins.install package RPC method, which may result in the execution of arbitrary orders.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

GL-Inet

Published

2026-01-08

Last Modified

2026-02-24

References

https://aleksazatezalo.medium.com/critical-command-injection-vulnerability-in-gl-inet-gl-axt1800-router-firmware-e6d67d81ee51?postPublishedType=repub https://www.gl-inet.com/security-updates/

Share on: