Vulnerability Description
An access control issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to access the router's settings file and obtain potentially sensitive information from the current settings.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intelbras | Rx 1500 Firmware | 2.2.9 |
| Intelbras | Rx 1500 | - |
| Intelbras | Rx 3000 Firmware | 1.0.11 |
| Intelbras | Rx 3000 | - |
Related Weaknesses (CWE)
References
- https://manuais.intelbras.com.br/manual-linha-rx/ChangeLogRX1500.htmlRelease Notes
- https://manuais.intelbras.com.br/manual-linha-rx/ChangeLogRX3000.htmlRelease Notes
- https://seclists.org/fulldisclosure/2025/Jul/14ExploitMailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2025/Jul/14
- http://seclists.org/fulldisclosure/2025/Jul/26
FAQ
What is CVE-2025-26062?
CVE-2025-26062 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An access control issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to access the router's settings file and obtain potentially sensitive information from the curren...
How severe is CVE-2025-26062?
CVE-2025-26062 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2025-26062?
Check the references section above for vendor advisories and patch information. Affected products include: Intelbras Rx 1500 Firmware, Intelbras Rx 1500, Intelbras Rx 3000 Firmware, Intelbras Rx 3000.