Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2025-70545

Quick assessment

Affected
n/a n/a
Exploitation
Public or AI PoC available; prioritize validation
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

PPC 2K05X是美国PPC公司的一款工业路由器。 PPC 2K05X v1.1.9_206L版本存在安全漏洞,该漏洞源于通用网关接口组件对用户输入处理不当,可能导致存储型跨站脚本攻击。

AI Predicted 6.1 Difficulty: Easy EPSS 0.35% · P26

Affected Version Matrix 1

VendorProduct Version RangeStatus
n/a n/a n/a affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2025-70545

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
A stored cross-site scripting (XSS) vulnerability exists in the web management interface of the PPC (Belden) ONT 2K05X router running firmware v1.1.9_206L. The Common Gateway Interface (CGI) component improperly handles user-supplied input, allowing a remote, unauthenticated attacker to inject arbitrary JavaScript that is persistently stored and executed when the affected interface is accessed.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
PPC 2K05X 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
PPC 2K05X是美国PPC公司的一款工业路由器。 PPC 2K05X v1.1.9_206L版本存在安全漏洞,该漏洞源于通用网关接口组件对用户输入处理不当,可能导致存储型跨站脚本攻击。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2025-70545

# POC Description Source Link Shenlong Link
1 None https://github.com/jeyabalaji711/CVE-2025-70545 POC Details
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-70545

请登录查看更多情报信息。

Other References for CVE-2025-70545 (1)

Same Patch Batch · n/a · 2026-02-04 · 12 CVEs total

CVE-2025-15555 7.3 HIGH Open5GS VoLTE Cx-Test hss-cx-path.c hss_ogs_diam_cx_mar_cb stack-based overflow
CVE-2026-1896 6.3 MEDIUM WeKan Migration Operation comprehensiveBoardMigration.js ComprehensiveBoardMigration Migra
CVE-2026-1895 6.3 MEDIUM WeKan Attachment Storage lists.js applyWipLimit ListWIPBleed access control
CVE-2026-1894 6.3 MEDIUM WeKan REST API checklistItems.js Checklist REST Bleed improper authorization
CVE-2026-1892 5.0 MEDIUM WeKan REST API boards.js setBoardOrgs improper authorization
CVE-2026-1884 4.7 MEDIUM ZenTao Webhook model.php fetchHook server-side request forgery
CVE-2025-69620 nTools Office Reader - PDF,Word,Excel 安全漏洞
CVE-2025-69621 Android Tools Comic Book Reader 安全漏洞
CVE-2025-69618 coto Tarot, Astro & Healing 安全漏洞
CVE-2025-70997 ELADMIN 安全漏洞
CVE-2025-71031 Melon 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2025-70545

No comments yet


Leave a comment