CVE-2025-64055CRITICAL 9.8EPSS p41.5%
CVE-2025-64055CVE-2025-64055
fanvil / x210_firmware
Description
An issue was discovered in Fanvil x210 V2 2.12.20 allowing unauthenticated attackers on the local network to access administrative functions of the device (e.g. file upload, firmware update, reboot...) via a crafted authentication bypass.
Scoring
| CVSS 3.1 | 9.8 (CRITICAL) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.52% probability of exploitation · percentile 41.5% · 2026-08-04T12:00:14Z |
| Published | 2025-12-03 |
| Last modified | 2026-07-05 |
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Authenticationcwe-287 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.