Vulnerability Description
An authentication bypass in the /cgi-bin/jvsweb.cgi endpoint of Revotech I6032W-FHW v1.0.0014 - 20210517 allows attackers to access sensitive information and escalate privileges via a crafted HTTP request.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Revotech | I6032W-Fhw Firmware | 1.0.0014 |
| Revotech | I6032W-Fhw | - |
Related Weaknesses (CWE)
References
- http://revotech.comProduct
- https://github.com/Remenis/CVE-2025-67158ExploitThird Party Advisory
FAQ
What is CVE-2025-67158?
CVE-2025-67158 is a vulnerability with a CVSS score of 7.5 (HIGH). An authentication bypass in the /cgi-bin/jvsweb.cgi endpoint of Revotech I6032W-FHW v1.0.0014 - 20210517 allows attackers to access sensitive information and escalate privileges via a crafted HTTP req...
How severe is CVE-2025-67158?
CVE-2025-67158 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-67158?
Check the references section above for vendor advisories and patch information. Affected products include: Revotech I6032W-Fhw Firmware, Revotech I6032W-Fhw.