Command Injection Vulnerability in Blink Routers by Blink
CVE-2025-45984
9.8CRITICAL
What is CVE-2025-45984?
A command injection vulnerability has been identified in multiple versions of Blink routers, specifically through the routepwd parameter in the sub_45B238 function. This flaw allows unauthorized users to potentially execute arbitrary commands, posing a significant risk to the integrity and security of the affected devices. Users are urged to update their devices to mitigate this risk and protect their network from exploitation.