CVE-2025-25525
Last modified
CVE-2025-25525 is a medium-severity vulnerability rated 5.1/10 on the CVSS scale. Buffer overflow vulnerability in H3C FA3010L access points SWFA1B0V100R005 due to the lack of length verification, which is related to the setting of firewall rules. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.. EPSS estimates a 0.23% chance of exploitation in the next 30 days.
Description
Buffer overflow vulnerability in H3C FA3010L access points SWFA1B0V100R005 due to the lack of length verification, which is related to the setting of firewall rules. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands.
Metrics
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-25525?
How severe is CVE-2025-25525?
How do I fix CVE-2025-25525?
Are you affected by CVE-2025-25525?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
