Vulnerability Description
KAYSUS KS-WR1200 routers with firmware 107 expose SSH and TELNET services on the LAN interface with hardcoded root credentials (root:12345678). The administrator cannot disable these services or change the hardcoded password. (Changing the management GUI password does not affect SSH/TELNET authentication.) Any LAN-adjacent attacker can trivially log in with root privileges.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Kaysus | Ks-Wr1200 Firmware | 107 |
| Kaysus | Ks-Wr1200 | - |
Related Weaknesses (CWE)
References
- https://github.com/actuator/cve/blob/main/KAYSUS/CVE-2025-68718.txtThird Party Advisory
- https://github.com/actuator/cve/tree/main/KAYSUSExploit
- https://www.kaysus.com/ks_wr3600__wifi_7_be3600_wireless_router.htmlProduct
FAQ
What is CVE-2025-68718?
CVE-2025-68718 is a vulnerability with a CVSS score of 5.4 (MEDIUM). KAYSUS KS-WR1200 routers with firmware 107 expose SSH and TELNET services on the LAN interface with hardcoded root credentials (root:12345678). The administrator cannot disable these services or chang...
How severe is CVE-2025-68718?
CVE-2025-68718 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-68718?
Check the references section above for vendor advisories and patch information. Affected products include: Kaysus Ks-Wr1200 Firmware, Kaysus Ks-Wr1200.