CVE-2025-55423 | ipTIME A2003NS-MU upnp_relay os command injection
A vulnerability described as critical has been identified in ipTIME A2003NS-MU, N600, A604-V3, A6ns-M, V508, N704QCA, A8ns-M, A304, A9004M, N702R, A604M, A804NS-MU, N804R, A8004T, A604G-MU, A3008-MU, A2004MU and A2004NS-MU, N702E, N604E, N104E, A8004ITL, N102E, N102i, T5004, N602E, AX8004BCM and A8004T-XR, T5008, N704E, A8004BCM, AX3004ITL and A604G-skylife. Affected by this vulnerability is the function upnp_relay. Such manipulation leads to os command injection.
This vulnerability is referenced as CVE-2025-55423. The attack needs to be initiated within the local network. No exploit is available.