CVE-2025-63422

7.5

Each Italy · Wireless Mini Router WIRELESS-N 300M

A flaw in the Each Italy Wireless Mini Router web interface allows unauthenticated attackers to modify administrator credentials via a crafted GET request.

Executive summary

A critical access control vulnerability in the Each Italy Wireless Mini Router allows unauthenticated remote attackers to compromise administrative account security.

Vulnerability

The device suffers from an incorrect access control vulnerability in the web management interface, which allows an unauthenticated attacker to change the administrative username and password by sending a specifically crafted GET request to the device.

Business impact

Successful exploitation of this vulnerability grants an attacker full control over the router, leading to a complete compromise of network traffic, unauthorized access to internal resources, and potential interception of sensitive data. With a CVSS score of 7.5, this high-severity flaw represents a significant risk to organizational infrastructure, as it bypasses all authentication mechanisms to facilitate unauthorized administrative access.

Remediation

Immediate Action: Since no official patch is currently available, administrators should restrict access to the web management interface by placing the device behind a firewall or disabling remote management entirely.

Proactive Monitoring: Monitor network traffic for unusual GET requests directed at administrative endpoints and review device logs for unexpected changes to account configurations.

Compensating Controls: Implement network-level access control lists to ensure that only trusted management IP addresses can reach the router interface, mitigating the risk of exposure to unauthorized external actors.

Exploitation status

Public Exploit Available: Yes, a proof-of-concept is available via the researcher's GitHub repository.

Analyst recommendation

Given the lack of a vendor-supplied patch and the presence of a public proof-of-concept, this vulnerability poses an immediate threat to the integrity of affected network devices. Security teams should prioritize isolating these routers from public-facing networks until a firmware update is released, as the ability for an unauthenticated user to reset administrative credentials constitutes a total security failure for the affected hardware.

More Each Italy CVEs

Sources