CVE-2025-41758

Publication date

2026-03-09 08:16:30

Family

CERTVDE

State

PUBLISHED

Description

A low-privileged remote attacker can exploit an arbitrary file write vulnerability in the wwupload.cgi endpoint. Due to path traversal this can lead to overwriting arbitrary files on the device and achieving a full system compromise.