PT-2025-30183 · Mercusys · Mercusys Mw301R

·

CVE-2025-7881

·

Published

2025-07-20

·

Updated

2025-07-21

CVSS v2.0

3.3

Low

VectorAV:N/AC:L/Au:M/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Mercusys MW301R version 1.0.2 Build 190726 Rel.59423n
Description A vulnerability exists in the Web Interface component of Mercusys MW301R. Manipulation of the code argument allows for weak password recovery, and the attack can be initiated remotely. The exploit for this issue has been publicly disclosed.
Recommendations Mercusys MW301R version 1.0.2 Build 190726 Rel.59423n: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-7881

Affected Products

Mercusys Mw301R