NONE · 0

CVE-2025-34151

A command injection vulnerability exists in the 'passwd' parameter of the PPPoE setup process on the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02). The input is passed directly to system-l...

Vulnerability Description

A command injection vulnerability exists in the 'passwd' parameter of the PPPoE setup process on the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02). The input is passed directly to system-level commands without sanitation, enabling unauthenticated attackers to achieve root-level code execution.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-34151?

CVE-2025-34151 is a documented vulnerability. A command injection vulnerability exists in the 'passwd' parameter of the PPPoE setup process on the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02). The input is passed directly to system-l...

How severe is CVE-2025-34151?

CVSS scoring is not yet available for CVE-2025-34151. Check NVD for updates.

Is there a patch for CVE-2025-34151?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.