PT-2025-49541 · Infinera · Infinera Mtc-9

Published

2025-12-08

·

Updated

2025-12-22

·

CVE-2025-27019

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Infinera MTC-9 versions R22.1.1.0275 through R22.1.1.0275
Description The Remote Shell Service (RSH) in Infinera MTC-9 allows an attacker to gain system access. This is achieved by exploiting password-less user accounts and activating a reverse shell. The affected service allows unauthorized access to the system.
Recommendations Update to version R23.0.

Fix

Missing Authentication

Weakness Enumeration

Related Identifiers

CVE-2025-27019

Affected Products

Infinera Mtc-9