CVE-2025-28202: High severity victure rx1800 vulnerability
Published May 9, 2025
·Updated
Incorrect access control in Victure RX1800 ENV1.0.0r12110933 allows attackers to enable SSH and Telnet services without authentication.
Affected Software
3 affected components
Victure RX1800
All of the following
Govicture Rx1800 Firmware=r12_110933
Govicture Rx1800=1.0.0
Event History
May 9, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-28202?
CVE-2025-28202 is classified as a high severity vulnerability due to its potential for unauthorized access.
2
How do I fix CVE-2025-28202?
To fix CVE-2025-28202, disable SSH and Telnet services in the device settings and ensure proper access control configurations.
3
What are the potential consequences of CVE-2025-28202?
The potential consequences of CVE-2025-28202 include unauthorized remote access to the device and possible compromise of the network.
4
Which devices are affected by CVE-2025-28202?
CVE-2025-28202 specifically affects the Victure RX1800 version EN_V1.0.0_r12_110933.
5
How can attackers exploit CVE-2025-28202?
Attackers can exploit CVE-2025-28202 by enabling SSH and Telnet services on the device without authentication, leading to unauthorized access.