CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2025-50404: Intelbras RX1500 Router v2.2.17 and before is vulnerable to Integer Overflow. The websReadEvent function incorrectly uses the int type when...

Description

Intelbras RX1500 Router v2.2.17 and before is vulnerable to Integer Overflow. The websReadEvent function incorrectly uses the int type when processing the "command" field of the http header, causing the array to cross the boundary and overwrite other fields in the array.

Classification

CVE ID: CVE-2025-50404

Affected Products

Vendor: n/a

Product: n/a

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.02% (probability of being exploited)

EPSS Percentile: 3.06% (scored less or equal to compared to others)

EPSS Date: 2025-07-05 (when was this score calculated)

References

https://nvd.nist.gov/vuln/detail/CVE-2025-50404
https://www.intelbras.com/en
https://github.com/feiwuxingxie/cve/blob/main/Intelbras/vul01/01.md

Timeline