PT-2025-43521 · Keenetic · Keeneticos

Published

2025-10-01

·

Updated

2026-05-20

·

CVE-2025-56008

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions KeeneticOS versions prior to 4.3
Description A cross site scripting (XSS) issue exists in KeeneticOS. This flaw, found at the "Wireless ISP" page, could allow an attacker in close proximity to the router to gain control of the device by adding new users with full permissions.
Recommendations Update KeeneticOS to version 4.3 or later.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

BDU:2025-14512
CVE-2025-56008

Affected Products

Keeneticos