PT-2025-53323 · Guangzhou V Solution Electronic Technology Co. · Sol Gpon/Epon Olt Platform

Published

2025-12-24

·

Updated

2025-12-24

·

CVE-2019-25237

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
V-SOL GPON/EPON OLT Platform v2.03 contains a privilege escalation vulnerability that allows normal users to gain administrative access by manipulating the user role parameter. Attackers can send a crafted HTTP POST request to the user management endpoint with 'user role mod' set to integer value '1' to elevate their privileges.

Exploit

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

CVE-2019-25237

Affected Products

Sol Gpon/Epon Olt Platform