CVE-2025-2398

CVSS v3 Score
7.2
High
CVSS v2 Score
8.3
High

Vulnerability Description

A vulnerability was found in China Mobile P22g-CIac, ZXWT-MIG-P4G4V, ZXWT-MIG-P8G8V, GT3200-4G4P and GT3200-8G8P up to 20250305. It has been rated as critical. This issue affects some unknown processing of the component CLI su Command Handler. The manipulation leads to use of default credentials. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS:7.3(High)

A vulnerability, which was classified as critical, was found in Fanli2012 native-php-cms 1.0. This affects an unknown part of the file /fladmin/user_recoverpwd.php. The manipulation leads to use of de...

CVSS:7.1(High)

Authentication credentials leakage vulnerability in Hitachi Ops Center Common Services within Hitachi Ops Center OVA. This issue affects Hitachi Ops Center Common Services: from 10.9.3-00 before 11.0....

CVSS:7.1(High)

Hitachi Ops Center Common Services within Hitachi Ops Center Analyzer viewpoint OVF contains an authentication credentials leakage vulnerability.This issue affects Hitachi Ops Center Common Services: ...

CVSS:7.4(High)

All the Toshiba printers share the same hardcoded root password. As for the affected products/models/versions, see the reference URL.

CVSS:7.4(High)

IO-1020 Micro ELD uses a default WIFI password that could allow an adjacent attacker to connect to the device.

CVSS:7.4(High)

IO-1020 Micro ELD web server uses a default password for authentication.