NONE · 0

CVE-2025-63080

Firmware in KAON PG5298A and PG5298B routers allow an authenticated user to send crafted JSON-RPC requests and perform operations not possible via GUI, e.g. system file read or command execution.    T...

Vulnerability Description

Firmware in KAON PG5298A and PG5298B routers allow an authenticated user to send crafted JSON-RPC requests and perform operations not possible via GUI, e.g. system file read or command execution.    This vulnerability has been fixed in firmware version: 3.0.82 for PG5298A and 4.0.82 for PG5298B.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-63080?

CVE-2025-63080 is a documented vulnerability. Firmware in KAON PG5298A and PG5298B routers allow an authenticated user to send crafted JSON-RPC requests and perform operations not possible via GUI, e.g. system file read or command execution.    T...

How severe is CVE-2025-63080?

CVSS scoring is not yet available for CVE-2025-63080. Check NVD for updates.

Is there a patch for CVE-2025-63080?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.