4.3
CVE-2025-64056
- EPSS 0.22%
- Veröffentlicht 05.12.2025 00:00:00
- Zuletzt bearbeitet 05.07.2026 02:17:24
- CVE-Watchlists
- Unerledigt
File upload vulnerability in Fanvil x210 V2 2.12.20 allows unauthenticated attackers on the local network to store arbitrary files on the filesystem.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Fanvil ≫ X210 Firmware Version2.12.20
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.22% | 0.13 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
|
CWE-306 Missing Authentication for Critical Function
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
https://github.com/SpikeReply/advisories/blob/main/cve/fanvil/cve-2025-64056.md