VYPR
Unrated severityNVD Advisory· Published Jul 9, 2025· Updated Jul 14, 2025

CVE-2025-52364

CVE-2025-52364

Description

Insecure Permissions vulnerability in Tenda CP3 Pro Firmware V22.5.4.93 allows the telnet service (telnetd) by default at boot via the initialization script /etc/init.d/eth.sh. This allows remote attackers to connect to the device s shell over the network, potentially without authentication if default or weak credentials are present

Affected products

2
  • Tenda/CP3 Pro Firmwaredescription
  • Tenda/CP3 Prollm-fuzzy
    Range: = V22.5.4.93

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.