CVE-2025-67158
HIGHRevotech I6032w-fhw Firmware - Authentication Bypass
Title source: ruleDescription
An authentication bypass in the /cgi-bin/jvsweb.cgi endpoint of Revotech I6032W-FHW v1.0.0014 - 20210517 allows attackers to access sensitive information and escalate privileges via a crafted HTTP request.
Exploits (1)
Scores
CVSS v3
7.5
EPSS
0.0007
EPSS Percentile
21.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Classification
CWE
CWE-287
Status
published
Affected Products (1)
revotech/i6032w-fhw_firmware
Timeline
Published
Jan 02, 2026
Tracked Since
Feb 18, 2026