CVE-2025-26004: Buffer Overflow
Published Mar 26, 2025
·Updated
Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack buffer overflow vulnerability when requesting admin.cgi parameter with setDdns.
Affected Software
3 affected components
Telesquare TLR-2005KSH
All of the following
Telesquare Tlr-2005ksh Firmware=1.1.4
Telesquare TLR-2005KSH
Event History
Mar 26, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2025-26004?
CVE-2025-26004 is classified as a critical severity vulnerability due to its potential to allow unauthorized access through a stack buffer overflow.
2
How do I fix CVE-2025-26004?
To mitigate CVE-2025-26004, update the Telesquare TLR-2005KSH firmware to the latest version provided by the vendor.
3
Who is affected by CVE-2025-26004?
CVE-2025-26004 affects users of the Telesquare TLR-2005KSH version 1.1.4 firmware.
4
What can an attacker do with CVE-2025-26004?
An attacker exploiting CVE-2025-26004 can execute arbitrary code on the affected device due to the stack buffer overflow.
5
Is there a workaround for CVE-2025-26004?
Currently, there are no known workarounds for CVE-2025-26004 other than applying the available firmware update.