CVE-2025-26793

CRITICAL EXPLOITED NUCLEI

FREEDOM Administration - Default Login

Title source: nuclei
STIX 2.1

Exploitation Summary

CVE-2025-26793 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including iSee857. A Nuclei detection template is also available.

AI-analyzed exploit summary The repository contains a functional exploit PoC for CVE-2026-22812, targeting OpenCode for remote command execution (RCE). The script sends a crafted JSON payload to the '/session/{id}/shell' endpoint to execute the 'id' command, verifying vulnerability by checking for 'uid=' and 'gid=' in the response.

Description

The Web GUI configuration panel of Hirsch (formerly Identiv and Viscount) Enterphone MESH through 2024 ships with default credentials (username freedom, password viscount). The administrator is not prompted to change these credentials on initial configuration, and changing the credentials requires many steps. Attackers can use the credentials over the Internet via mesh.webadmin.MESHAdminServlet to gain access to dozens of Canadian and U.S. apartment buildings and obtain building residents' PII. NOTE: the Supplier's perspective is that the "vulnerable systems are not following manufacturers' recommendations to change the default password."

Exploits (1)

github WORKING POC 40 stars
by iSee857 · pythonpoc
https://github.com/iSee857/CVE-PoC/tree/main/FREEDOM-Administration_Default-Login_CVE-2025-26793.py

The repository contains a functional exploit PoC for CVE-2026-22812, targeting OpenCode for remote command execution (RCE). The script sends a crafted JSON payload to the '/session/{id}/shell' endpoint to execute the 'id' command, verifying vulnerability by checking for 'uid=' and 'gid=' in the response.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: OpenCode (version not specified)
No auth needed
Prerequisites: Network access to the target · Target running vulnerable OpenCode instance
devstral-2 · analyzed Feb 27, 2026 Full analysis →

Nuclei Templates (1)

FREEDOM Administration - Default Login
CRITICALVERIFIEDby Eric Daigle,DhiyaneshDK
FOFA: title="FREEDOM Administration"

Scores

CVSS v4 10.0
EPSS 0.2596
EPSS Percentile 96.4%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/MSI:S/S:P

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

VulnCheck KEV 2025-06-08
CWE
CWE-1393
Status published
Products (1)
Hirsch/Enterphone MESH < 2024
Published Feb 15, 2025
Tracked Since Feb 18, 2026