Sgwbox's vulnerability footprint concentrates in a narrowly scoped product line centered on the N3 appliance and its firmware, yet the vendor's disclosures skew strongly toward critical-severity outcomes. The recurring exposure surfaces through command injection, output injection, buffer overflows, memory-bounds violations, and authentication weaknesses that are characteristic of embedded network appliances handling untrusted input at the system level. Defenders should prioritize inventory and patching of affected N3 devices; current severity and exploitation counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sgwbox over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-14707CRITICAL A security flaw has been discovered in Shiguangwu sgwbox N3 2.0.25. Affected is an unknown function of the file /usr/sbin/http_eshell_server of the component DOCKER Feature. Perfor | Dec 15, 2025 | 9.8 | 44 | NO | NO |
CVE-2025-14706CRITICAL A vulnerability was identified in Shiguangwu sgwbox N3 2.0.25. This impacts an unknown function of the file /usr/sbin/http_eshell_server of the component NETREBOOT Interface. Such | Dec 15, 2025 | 9.8 | 42 | NO | NO |
CVE-2025-14705CRITICAL A vulnerability was determined in Shiguangwu sgwbox N3 2.0.25. This affects an unknown function of the component SHARESERVER Feature. This manipulation of the argument params cause | Dec 15, 2025 | 9.8 | 41 | NO | NO |
CVE-2025-14704CRITICAL A vulnerability was found in Shiguangwu sgwbox N3 2.0.25. The impacted element is an unknown function of the file /eshell of the component API. The manipulation results in path tra | Dec 15, 2025 | 9.8 | 36 | NO | NO |
CVE-2025-14709CRITICAL A security vulnerability has been detected in Shiguangwu sgwbox N3 2.0.25. Affected by this issue is some unknown functionality of the file /usr/sbin/http_eshell_server of the comp | Dec 15, 2025 | 9.8 | 35 | NO | NO |
CVE-2025-14708HIGH A weakness has been identified in Shiguangwu sgwbox N3 2.0.25. Affected by this vulnerability is an unknown functionality of the file /usr/sbin/http_eshell_server of the component | Dec 15, 2025 | 7.5 | 29 | NO | NO |
CVE-2025-14703MEDIUM A vulnerability has been found in Shiguangwu sgwbox N3 2.0.25. The affected element is an unknown function of the file /fsnotify of the component POST Message Handler. The manipula | Dec 15, 2025 | 5.3 | 20 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sgwbox.
Media articles that mention a CVE ID that affects a product developed by Sgwbox — matched by CVE ID, not by vendor name.