Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-26138 | A security flaw has been discovered in TOTOLINK X2000R up to 2.0.0. The affected element is an unknown function of the file /etc/shadow.sample of the component Administrative Interface. The manipulation results in use of default credentials. Attacking locally is a requirement. Attacks of this nature are highly complex. The exploitability is described as difficult. The exploit has been released to the public and may be exploited. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 10 Sep 2025 04:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Totolink x2000r Firmware
|
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:h:totolink:x2000r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:x2000r_firmware:2.0.0-b20230727.1043.web:*:*:*:*:*:*:* |
|
| Vendors & Products |
Totolink x2000r Firmware
|
Sun, 31 Aug 2025 17:45:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Totolink
Totolink x2000r |
|
| Vendors & Products |
Totolink
Totolink x2000r |
Fri, 29 Aug 2025 04:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 29 Aug 2025 03:45:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in TOTOLINK X2000R up to 2.0.0. The affected element is an unknown function of the file /etc/shadow.sample of the component Administrative Interface. The manipulation results in use of default credentials. Attacking locally is a requirement. Attacks of this nature are highly complex. The exploitability is described as difficult. The exploit has been released to the public and may be exploited. | |
| Title | TOTOLINK X2000R Administrative shadow.sample default credentials | |
| Weaknesses | CWE-1392 | |
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-08-28T18:41:04.929Z
Reserved: 2025-08-28T11:12:10.995Z
Link: CVE-2025-9577
Updated: 2025-08-28T18:40:55.172Z
Status : Analyzed
Published: 2025-08-28T19:15:34.880
Modified: 2025-09-09T19:13:43.063
Link: CVE-2025-9577
No data.
OpenCVE Enrichment
Updated: 2025-08-31T17:41:42Z
EUVD