Remote Code Execution Vulnerability in EDIMAX Network Camera
CVE-2025-45857

9.8CRITICAL

Key Information:

Vendor

EDIMAX

Status
Vendor
CVE Published:
13 May 2025

What is CVE-2025-45857?

A remote code execution vulnerability has been identified in the EDIMAX CV7428NS network camera. This security flaw is triggered through the command parameter in the mp function, allowing unauthorized users to execute arbitrary code on the device remotely. As a result, the integrity and confidentiality of the system can be compromised, posing significant risks to users. It is crucial for organizations using this camera model to implement recommended security patches and conduct regular security assessments to mitigate potential exploitation.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
The Cyber Security Vulnerability Database.