PT-2025-4739 · Re11S · Re11S

Xyqer1

·

Published

2025-01-16

·

Updated

2025-04-09

·

CVE-2025-22904

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions RE11S version 1.11
Description A stack overflow issue was discovered in the setWAN function via the pptpUserName parameter. This issue can be exploited, potentially leading to unintended consequences. No information is available about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations For RE11S version 1.11, as a temporary workaround, consider restricting the use of the setWAN function or limiting input for the pptpUserName parameter until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-04095
CVE-2025-22904

Affected Products

Re11S