A firmware downgrade vulnerability exists in the OTA...
High severity
Unreviewed
Published
Nov 24, 2025
to the GitHub Advisory Database
•
Updated Nov 24, 2025
Description
Published by the National Vulnerability Database
Nov 24, 2025
Published to the GitHub Advisory Database
Nov 24, 2025
Last updated
Nov 24, 2025
A firmware downgrade vulnerability exists in the OTA Update functionality of GL-Inet GL-AXT1800 4.7.0. A specially crafted .tar file can lead to a firmware downgrade. An attacker can perform a man-in-the-middle attack to trigger this vulnerability.
References