We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-52361



Description

Insecure permissions in the script /etc/init.d/lighttpd in AK-Nord USB-Server-LXL Firmware v0.0.16 Build 2023-03-13 allows a locally authenticated low-privilege user to execute arbitrary commands with root privilege via editing this script which is executed with root-privileges on any interaction and on every system boot.

Reserved 2025-06-16 | Published 2025-08-01 | Updated 2025-08-01 | Assigner mitre

References

www.ak-nord.de/...erver--usb-konverter--print-server-80.html

seclists.org/fulldisclosure/2025/Jul/20

cve.org (CVE-2025-52361)

nvd.nist.gov (CVE-2025-52361)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-52361

Support options

Helpdesk Chat, Email, Knowledgebase