CVE-2025-41662
11.06.2025, 09:15
An unauthenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack of Cross-Site Request Forgery (CSRF) protection in the Main Web Interface (endpoint tls_iotgen_setting).
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration