CVE-2025-26003: Code Injection
Published Mar 26, 2025
·Updated
Telesquare TLR-2005KSH 1.1.4 is affected by an unauthorized command execution vulnerability when requesting the admin.cgi parameter with setAutorest.
Affected Software
3 affected components
Telesquare TLR-2005KSH
All of the following
Telesquare Tlr-2005ksh Firmware=1.1.4
Telesquare TLR-2005KSH
Event History
Mar 26, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2025-26003?
CVE-2025-26003 is considered to have a high severity due to its potential for unauthorized command execution.
2
How do I fix CVE-2025-26003?
To fix CVE-2025-26003, upgrade Telesquare TLR-2005KSH to the latest firmware version that addresses this vulnerability.
3
What systems are affected by CVE-2025-26003?
CVE-2025-26003 specifically affects Telesquare TLR-2005KSH devices running firmware version 1.1.4.
4
Can CVE-2025-26003 lead to data breaches?
Yes, CVE-2025-26003 can potentially lead to data breaches due to unauthorized command execution capabilities.
5
Is CVE-2025-26003 already being exploited in the wild?
At this time, there is no public evidence indicating that CVE-2025-26003 is being actively exploited in the wild.