cve/2025/CVE-2025-34151.md
2025-09-29 21:09:30 +02:00

956 B

CVE-2025-34151

Description

A command injection vulnerability exists in the 'passwd' parameter of the PPPoE setup process on the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02). The input is passed directly to system-level commands without sanitation, enabling unauthenticated attackers to achieve root-level code execution.

POC

Reference

Github