PT-2025-30183 · Mercusys · Mercusys Mw301R

Raulpacxxx

·

Published

2025-07-20

·

Updated

2025-07-21

·

CVE-2025-7881

CVSS v2.0

3.3

Low

VectorAV:N/AC:L/Au:M/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Mercusys MW301R version 1.0.2 Build 190726 Rel.59423n
Description A vulnerability exists in the Web Interface component of Mercusys MW301R. Manipulation of the code argument allows for weak password recovery, and the attack can be initiated remotely. The exploit for this issue has been publicly disclosed.
Recommendations Mercusys MW301R version 1.0.2 Build 190726 Rel.59423n: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2025-7881

Affected Products

Mercusys Mw301R