Unauthorized Remote Command Execution in JD Cloud NAS Routers
CVE-2025-66848
9.8CRITICAL
What is CVE-2025-66848?
JD Cloud NAS routers, including models AX1800, AX3000, AX6600, BE6500, ER1, and ER2, are susceptible to an unauthorized remote command execution vulnerability. This security flaw allows an attacker to execute arbitrary commands on the affected devices without proper authentication, posing significant risks to network integrity. Organizations utilizing these routers should prioritize immediate remediation measures to safeguard against potential exploitation.
