← back
CVE-2025-22450highCWE-1242

CVE-2025-22450

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 7.5epss 0.4%
exploitation probability
0.4%top 70% of all CVEs
observed exploitation
nono source reports it
In short

The UD-LT2 firmware contains hidden features that allow a remote attacker to disable the firewall protecting internal networks and open specific ports, potentially exposing connected devices to unauthorized access.

Technical detail

CWE-1242 describes exposure of undocumented features in UD-LT2 Ver.1.00.008_SE and earlier, permitting remote attackers to disable LAN-side firewall protection and expose internal ports without authentication. The vulnerability enables network segmentation bypass and unauthorized access to protected resources.

Summary generated and translated by AI from the official description.
Inclusion of undocumented features issue exists in UD-LT2 firmware Ver.1.00.008_SE and earlier. A remote attacker may disable the LAN-side firewall function of the affected products, and open specific ports.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N