Description
A firmware downgrade vulnerability exists in the OTA Update functionality of GL-Inet GL-AXT1800 4.7.0. A specially crafted .tar file can lead to a firmware downgrade. An attacker can perform a man-in-the-middle attack to trigger this vulnerability.
INFO
Published Date :
2025-11-24T15:11:02.641Z
Last Modified :
2025-11-24T17:03:28.621Z
Source :
talos
AFFECTED PRODUCTS
The following products are affected by CVE-2025-44018 vulnerability.
| Vendors | Products |
|---|---|
| Gl-inet |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2025-44018.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact