Critical severity9.8NVD Advisory· Published Dec 4, 2025· Updated Jul 5, 2026
CVE-2025-29269
CVE-2025-29269
Description
ALLNET ALL-RUT22GW v3.3.8 was discovered to contain an OS command injection vulnerability via the command parameter in the popen.cgi endpoint.
Affected products
3= 3.3.8+ 1 more
- (no CPE)range: = 3.3.8
- (no CPE)
- cpe:2.3:o:allnet:all-rut22gw_firmware:3.3.8:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- blog.byteray.co.uk/critical-vulnerabilities-in-rut22gw-industrial-lte-cellular-routers-f4eb8768feb7nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.