PT-2025-35125 · Seeedstudio · Respeaker Linkit7688

Lxyilu

·

Published

2025-08-28

·

Updated

2025-08-28

·

CVE-2025-9576

CVSS v3.1
2.5
VectorAV:L/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

Name of the Vulnerable Software and Affected Versions:

seeedstudio ReSpeaker LinkIt7688 (affected versions not specified)

Description:

A vulnerability exists in seeedstudio ReSpeaker LinkIt7688, impacting an unknown function within the Administrative Interface component’s `/etc/shadow` file. This manipulation allows for the use of default credentials. Local access is required for exploitation, which is considered difficult due to its complexity. The exploit is publicly available. The vendor was contacted regarding this issue but did not respond.

Recommendations:

At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2025-9576

Affected Products

Respeaker Linkit7688