go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

Sapido Wireless Router - Exposure of Sensitive Information

TVN ID TVN-202506007
CVE ID CVE-2025-6560
CVSS 9.8 (Critical)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products Affected models:
BR071n, BR261c, BR270n, BR476n, BRC70n, BRC70x, BRC76n, BRD70n, BRE70n, BRE71n, BRF61c, BRF71n
Description Multiple wireless router models from Sapido have an Exposure of Sensitive Information vulnerability, allowing unauthenticated remote attackers to directly access a system configuration file and obtain plaintext administrator credentials.
Solution The affected models are out of support; replacing the device is recommended.
Credit Yu-Chieh Kuo, Li-Fan Cheng, Shi-Yi Xie, Chih-Che Chang, An-Wei Kung(NICS)
Public Date 2025-06-24
Top