CVE-2025-70518

LOWCVSS 10.0 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

The management portal's diagnostic ping tool of Fanvil x7a firmware version 2.6.0.1182 does not handle user supplied input securely. The lack of secure user input handling allows any unauthenticated attacker to inject commands and run code in the underlying Android operating system.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-77

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-10-08: 310-08
Referenced assets1 URL
By indicator
Full discourse3 posts
  • ExploitGrid@exploitgrid

    ExploitGrid Daily Digest 🚨 Top CVEs: CVE-2025-70518 (CVSS: 10) CVE-2026-102255 (CVSS: 10) sonicwall CVE-2026-76482 (CVSS: 10) Cisco CVE-2025-70521 (CVSS: 9.8) CVE-2026-104334 (CVSS: 9.8) IBM ..🧵👇

    10031147
    375 followersView on X
  • ExploitGrid@exploitgrid

    🟠 HIGH PRIORITY (CVSS 9.8-10) ├ CVE-2026-102255 · SonicWall · CVSS 10 ├ CVE-2026-76482 · Cisco License On-Prem · Security hardening release (10) ├ CVE-2025-70518 · CVSS 10 ├ CVE-2025-70521 · CVSS 9.8 └ CVE-2026-104334 · IBM Langflow OSS · Multiple vulnerabilities (9.8)

    1001056
    375 followersView on X
  • ExploitGrid@exploitgrid

    [CVE] CVE-2025-70518 [HIGH PRIORITY] CVSS: 10 🔗 https://exploitgrid.net/cve/CVE-2025-70518

    1001074
    375 followersView on X

Explore more