CVE-2025-63292 describes a vulnerability in various Freebox models (v5 HD, v5 Crystal, v6 Révolution, Mini 4K, One) where subscribers' IMSI identifiers are exposed in plaintext during EAP-SIM authentication on the FreeWifi_secure network. An attacker within Wi-Fi range can passively capture these unencrypted IMSI transmissions, enabling device tracking and long-term user monitoring. The vulnerability has a low CVSS score of 3.5 due to its adjacent attack vector and limited impact to confidentiality, with no known active exploitation, public exploit code, or significant community discussion. The vendor plans to deactivate the affected FreeWifi_secure service by October 1, 2025.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.7.20CPE matchmatch criteria | cpe:2.3:o:freebox:v5_hd_firmware:*:*:*:*:*:*:*:* | ||
<= 1.7.20CPE matchmatch criteria | cpe:2.3:o:freebox:v5_crystal_firmware:*:*:*:*:*:*:*:* | ||
<= 4.7.0CPE matchmatch criteria | cpe:2.3:o:freebox:v6_revolution_firmware:*:*:*:*:*:*:*:* | ||
<= 4.7.0CPE matchmatch criteria | cpe:2.3:o:freebox:mini_4k_firmware:*:*:*:*:*:*:*:* | ||
<= 4.7.0CPE matchmatch criteria | cpe:2.3:o:freebox:one_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.
Remediation records are not available for this CVE.