PT-2025-36948 · Calix+1 · Gigacenter Ont 812G+7

Danilo Erazo

·

Published

2025-09-09

·

Updated

2025-10-14

·

CVE-2025-53914

CVSS v4.0

7.0

High

VectorAV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions: Calix GigaCenter ONT versions 844E, 844G, 844GE, 854GE, 812G, 813G, 818G
Description: A privilege abuse issue exists in Calix GigaCenter ONT (Broadcom SoC modules) due to excessive privileges.
Recommendations: Apply the necessary configuration changes to restrict privileges on the GigaCenter ONT version 844E. Apply the necessary configuration changes to restrict privileges on the GigaCenter ONT version 844G. Apply the necessary configuration changes to restrict privileges on the GigaCenter ONT version 844GE. Apply the necessary configuration changes to restrict privileges on the GigaCenter ONT version 854GE. Apply the necessary configuration changes to restrict privileges on the GigaCenter ONT version 812G. Apply the necessary configuration changes to restrict privileges on the GigaCenter ONT version 813G. Apply the necessary configuration changes to restrict privileges on the GigaCenter ONT version 818G.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2025-53914

Affected Products

Broadcom Soc Modules
Gigacenter Ont 812G
Gigacenter Ont 813G
Gigacenter Ont 818G
Gigacenter Ont 844E
Gigacenter Ont 844G
Gigacenter Ont 844Ge
Gigacenter Ont 854Ge