CVE-2025-54084: Calix Gigacenter ONT - Command Injection
OS Command ('OS Command Injection') vulnerability in Calix GigaCenter ONT (Quantenna SoC modules) allows authenticated attackers with 'super' user credentials to execute arbitrary OS commands through improper input validation, potentially leading to full system compromise.This issue affects GigaCenter ONT: 844E, 844G, 844GE, 854GE.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54084?
CVE-2025-54084 is considered a high severity vulnerability due to its potential for full system compromise.
How do I fix CVE-2025-54084?
To fix CVE-2025-54084, ensure that all affected Calix GigaCenter ONT devices are updated to the latest software version beyond 854GE.
Who is affected by CVE-2025-54084?
CVE-2025-54084 affects users of the Calix GigaCenter ONT with versions between 844E and 854GE.
What type of vulnerability is CVE-2025-54084?
CVE-2025-54084 is an OS Command Injection vulnerability that allows attackers to execute arbitrary commands.
What are the implications of CVE-2025-54084?
The implications of CVE-2025-54084 include potential full system compromise for devices utilizing the vulnerable modules.