CVE-2025-64093

CRITICAL WAF: High
CVSS 9.8 Published: 2026-01-09
CWE-77

Remote Code Execution vulnerability that allows unauthenticated attackers to inject arbitrary commands into the hostname of the device.

WAF Coverage Analysis

Command Injection High WAF Coverage

OWASP: A03:2021 Injection

932xxx - Remote Code Execution

Affected Software

VendorProductVersion
zenitelicx500_firmwareup to 1.4.3.3
zenitelicx510_firmwareup to 1.4.3.3

References

Back to CVE Database