Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-14395 | CP-XR-DE21-S -4G Router Firmware version 1.031.022 was discovered to contain insecure protections for its UART console. This vulnerability allows local attackers to connect to the UART port via a serial connection, read all boot sequence, and revealing internal system details and sensitive information without any authentication. |
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 11 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cpplusworld
Cpplusworld cp-xr-de21-s Cpplusworld cp-xr-de21-s Firmware |
|
| CPEs | cpe:2.3:h:cpplusworld:cp-xr-de21-s:-:*:*:*:*:*:*:* cpe:2.3:o:cpplusworld:cp-xr-de21-s_firmware:1.031.022:*:*:*:*:*:*:* |
|
| Vendors & Products |
Cpplusworld
Cpplusworld cp-xr-de21-s Cpplusworld cp-xr-de21-s Firmware |
Tue, 13 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-306 | |
| Metrics |
cvssV3_1
|
Tue, 13 May 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CP-XR-DE21-S -4G Router Firmware version 1.031.022 was discovered to contain insecure protections for its UART console. This vulnerability allows local attackers to connect to the UART port via a serial connection, read all boot sequence, and revealing internal system details and sensitive information without any authentication. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-13T15:33:54.259Z
Reserved: 2025-04-22T00:00:00.000Z
Link: CVE-2025-44039
Updated: 2025-05-13T15:33:44.648Z
Status : Analyzed
Published: 2025-05-13T15:15:57.970
Modified: 2025-07-11T14:11:15.530
Link: CVE-2025-44039
No data.
OpenCVE Enrichment
No data.
EUVD