Back to Database
Status published
High
CVE-2025-0356
NEC Corporation Aterm WX1500HP Ver.1.4.2 and earlier and WX3600HP Ver.1.5.3...
Vulnerability Description
NEC Corporation Aterm WX1500HP Ver.1.4.2 and earlier and WX3600HP Ver.1.5.3 and earlier allows a attacker to execute arbitrary OS commands via the network.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-0356
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Kakeru Kajihara of NTT Security Holdings.
More from NEC Corporation
View All →CVE-2025-8153
Cross-site Scripting vulnerability in NEC Corporation UNIVERGE IX from Ver.9.5...
Medium
5.1
CVE-2025-12852
DLL Loading vulnerability in NEC Corporation RakurakuMusen Start EX All...
High
8.4
CVE-2025-11546
CLUSTERPRO X for Linux 4.0, 4.1, 4.2, 5.0, 5.1 and...
Critical
9.3
CVE-2025-0355
Missing Authentication for Critical Function vulnerability in NEC Corporation Aterm...
High
7.5
CVE-2025-0354
Cross-site scripting vulnerability in NEC Corporation Aterm WG2600HS Ver.1.7.2 and...
Medium
4.8
Affected Vendor
NEC Corporation
View all reports →Affected Software
WX1500HP, WX3600HP
Vulnerable Versions:
Ver.1.4.2 and earlier, Ver.1.5.3 and earlier
Timeline
Official Publish:
January 15th, 2025
Last Modified:
April 3rd, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H