CVE-2025-34117 is a critical remote code execution vulnerability affecting multiple Netcore and Netis router models with firmware released before August 2014. This flaw stems from an undocumented backdoor listener on UDP port 53413, allowing an unauthenticated remote attacker to execute arbitrary commands by sending specially crafted UDP packets. With a CVSS score of 9.3 (CRITICAL), the vulnerability is easily exploitable over the network with low attack complexity, leading to complete compromise of confidentiality, integrity, and availability. While not currently in CISA's KEV catalog, a Metasploit module exists, and the vulnerability has garnered significant community discussion, indicating potential for active exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Netcore Technology | Router Firmware | Prior to August 2014CNA affecteddefault affected | |
| Netis | Router Firmware | Prior to August 2014CNA affecteddefault affected |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.