PT-2025-39797 · Apeman · Apeman Id71

Juliourena

·

Published

2025-09-28

·

Updated

2025-12-23

·

CVE-2025-11126

CVSS v3.1

10

Critical

AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Apeman ID71 (affected versions not specified)
Description A security flaw exists in Apeman ID71 that involves hard-coded credentials. This allows for remote takeover of the device. The vulnerability resides in unknown code within the /system/www/system.ini file. The exploit for this issue has been publicly released. The vendor was notified but did not respond.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Using Hardcoded Credentials

Weakness Enumeration

Related Identifiers

BDU:2025-14590
CVE-2025-11126

Affected Products

Apeman Id71