CVE-2025-57175
6.4 MEDIUMSiklu EtherHaul 8010 siklu-uimage-nxp-enc-10_6_2-18707-ea552dc00b devices have a static root password
Published: 2026-04-08 · Last updated: 2026-06-02
Severity and scoring
- CVSS
- 6.4 MEDIUM
- Vector
- CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
- CWE
- CWE-259
Affected products
| Vendor | Product |
|---|---|
| ceragon | etherhaul-8010fx_firmware |
Description
Siklu EtherHaul 8010 siklu-uimage-nxp-enc-10_6_2-18707-ea552dc00b devices have a static root password.
Source: NVD
References
Related CVEs
Same CWE
- CVE-2026-11552 — A vulnerability has been found in SourceCodester Onlne Examination & Learning Management System and Syllabus-aligned Learning Management ... (5.3 MEDIUM)
- CVE-2026-11515 — A vulnerability has been found in SourceCodester Barangay Resident Profiling and Information Management System 1.0 (5.3 MEDIUM)
- CVE-2026-35905 — T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, and T7281 v1.0.03 were discovered to contain a hardcoded password for root acce... (9.8 CRITICAL)
- CVE-2026-22055 — Active IQ OneCollect version 2.7.3 contains hard-coded credentials that could allow an authenticated attacker with low privileges to perf...
- CVE-2026-22054 — Active IQ Config Advisor version 6.7.3 contains hard-coded credentials that could allow an authenticated attacker with low privileges to ...