9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
An issue was discovered in Fanvil x210 V2 2.12.20 allowing unauthenticated attackers on the local network to access administrative functions of the device (e.g. file upload, firmware update, reboot...) via a crafted authentication bypass.
AI Analysis
Unauthenticated access to administrative functions via crafted authentication bypass
Basic Information
ID
CVE-2025-64055
Source
mitre
Published
Dec 3, 2025 at 00:00
Modified
Dec 5, 2025 at 20:08
Affected Product
Vendor
Fanvil
Product
Fanvil x210
Version
2.12.20
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
9.8 / 10
AI Severity
Critical
Vendor
Fanvil
Product
x210
Version
2.12.20