PT-2025-22717 · Intellian · Intellian C700
Published
2025-05-23
·
Updated
2025-05-24
·
CVE-2025-41379
CVSS v4.0
6.3
Medium
| Vector | AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:H/SA:N |
Name of the Vulnerable Software and Affected Versions
Intellian C700 (affected versions not specified)
Description
The issue concerns the Intellian C700 web panel, specifically with the addition of firewall rules. Each rule has an associated ID, but a discrepancy can occur between the ID used for creating a database entry and the JSON ID. This discrepancy can lead to a situation where a rule cannot be deleted, except by resetting the device to its factory defaults. An attacker could exploit this to create undeletable rules.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intellian C700