Vulnerability Description
Mitrastar GPT-2741GNAC-N2 devices are provided with access through ssh into a restricted default shell.The command "deviceinfo show file" is supposed to be used from restricted shell to show files and directories. By providing " /bin/sh" (quotes included) to the argument of this command will drop a root shell.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- http://gpt-2741gnac-n2.com
- http://mitrastar.com
- https://gist.github.com/geraldog/2d07fdedbbb79d822e9df4b75f882a63
FAQ
What is CVE-2025-50753?
CVE-2025-50753 is a vulnerability with a CVSS score of 8.4 (HIGH). Mitrastar GPT-2741GNAC-N2 devices are provided with access through ssh into a restricted default shell.The command "deviceinfo show file" is supposed to be used from restricted shell to show files and...
How severe is CVE-2025-50753?
CVE-2025-50753 has been rated HIGH with a CVSS base score of 8.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-50753?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.