Intelbras RX1500 Router v2.2.17 and before is vulnerable to Integer Overflow. The websReadEvent function incorrectly uses the int type when processing the "command" field of the http header, causing the array to cross the boundary and overwrite other fields in the array.
References
Link | Resource |
---|---|
https://github.com/feiwuxingxie/cve/blob/main/Intelbras/vul01/01.md | Exploit Third Party Advisory |
https://www.intelbras.com/en | Product |
Configurations
Configuration 1 (hide)
AND |
|
History
20 Aug 2025, 17:05
Type | Values Removed | Values Added |
---|---|---|
First Time |
Intelbras rx 1500
Intelbras rx 1500 Firmware Intelbras |
|
References | () https://github.com/feiwuxingxie/cve/blob/main/Intelbras/vul01/01.md - Exploit, Third Party Advisory | |
References | () https://www.intelbras.com/en - Product | |
CPE | cpe:2.3:o:intelbras:rx_1500_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:intelbras:rx_1500:-:*:*:*:*:*:*:* |
08 Jul 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-190 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
03 Jul 2025, 15:14
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
01 Jul 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-01 15:15
Updated : 2025-08-20 17:05
NVD link : CVE-2025-50404
Mitre link : CVE-2025-50404
CVE.ORG link : CVE-2025-50404
JSON object : View
Products Affected
intelbras
- rx_1500_firmware
- rx_1500
CWE
CWE-190
Integer Overflow or Wraparound