Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-26162 | A vulnerability was determined in Telesquare TLR-2005KSH 1.2.4. The affected element is an unknown function of the file /cgi-bin/internet.cgi?Command=lanCfg. Executing manipulation of the argument Hostname can lead to command injection. The attack may be performed from a remote location. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way. |
Thu, 11 Sep 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Telesquare tlr-2005ksh Firmware
|
|
| CPEs | cpe:2.3:h:telesquare:tlr-2005ksh:-:*:*:*:*:*:*:* cpe:2.3:o:telesquare:tlr-2005ksh_firmware:1.2.4:*:*:*:*:*:*:* |
|
| Vendors & Products |
Telesquare tlr-2005ksh Firmware
|
Sun, 31 Aug 2025 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Telesquare
Telesquare tlr-2005ksh |
|
| Vendors & Products |
Telesquare
Telesquare tlr-2005ksh |
Fri, 29 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 29 Aug 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in Telesquare TLR-2005KSH 1.2.4. The affected element is an unknown function of the file /cgi-bin/internet.cgi?Command=lanCfg. Executing manipulation of the argument Hostname can lead to command injection. The attack may be performed from a remote location. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Telesquare TLR-2005KSH internet.cgi command injection | |
| Weaknesses | CWE-74 CWE-77 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-08-29T14:14:52.005Z
Reserved: 2025-08-28T15:04:58.410Z
Link: CVE-2025-9603
Updated: 2025-08-29T14:14:42.398Z
Status : Analyzed
Published: 2025-08-29T02:15:32.517
Modified: 2026-04-29T01:00:01.613
Link: CVE-2025-9603
No data.
OpenCVE Enrichment
Updated: 2025-08-31T08:41:39Z
EUVD