CVE-2025-3758

Vulnerability Details

Basic Information

Title CVE-2025-3758
Type cve
Published 2025-05-08T10:15:18
Last Seen 2025-05-08T10:23:27
CVSS Score 0.0 ()

CVSS v3 Details

Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact

CVE Information

CVE IDs CVE-2025-3758
CWE CWE-311, CWE-306
Bulletin Family cve

Description

WF2220 exposes endpoint /cgi-bin-igd/netcore_get.cgi that returns configuration of the device to unauthorized users. Returned configuration includes cleartext password. The vendor was contacted early about this disclosure but…

Impact Assessment

Base Score 0.0
Severity

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.