CVE-2025-57175
Analyzed
Analyzed - Analysis Complete
Static Root Password in Siklu EtherHaul 8010 Enables Unauthorized Access
Publication date: 2026-04-08
Last updated on: 2026-06-02
Assigner: MITRE
Description
Description
Siklu EtherHaul 8010 siklu-uimage-nxp-enc-10_6_2-18707-ea552dc00b devices have a static root password.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| ceragon | etherhaul-8010fx_firmware | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-259 | The product contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components. |