CVE-2025-8890 - Authenticated RCE in SDMC NE6037 router

CVE-2025-8890 - Authenticated RCE in SDMC NE6037 router

CVE ID : CVE-2025-8890 Published : Nov. 27, 2025, 2:15 p.m. | 1 hour, 37 minutes ago Description : Firmware in SDMC NE6037 routers prior to version 7.1.12.2.44 has a network diagnostics tool vulnerable to a shell command injection attacks. In order to exploit this vulnerability, an attacker has to log in to the router's administrative portal, which by default is reachable only via LAN ports. Severity: 9.3 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
CRITICAL
Published
Nov. 27, 2025
Attack Vector: network
Impact: command injection

Source: Telegram CVE Monitor