CVE Feed

    Dashboard / CVE / CVE-2025-63292

    CVE-2025-63292

    Freebox v5 HD (firmware = 1.7.20), Freebox v5 Crystal (firmware = 1.7.20), Freebox v6 Révolution r1–r3 (firmware = 4.7.x), Freebox Mini 4K (firmware = 4.7.x), and Freebox One (firmware = 4.7.x) were discovered to expose subscribers' IMSI identifiers in plaintext during the initial phase of EAP-SIM authentication over the `FreeWifi_secure` network. During the EAP-Response/Identity exchange, the subscriber's full Network Access Identifier (NAI), which embeds the raw IMSI, is transmitted without encryption, tunneling, or pseudonymization. An attacker located within Wi-Fi range (~100 meters) can passively capture these frames without requiring user interaction or elevated privileges. The disclosed IMSI enables device tracking, subscriber correlation, and long-term monitoring of user presence near any broadcasting Freebox device. The vendor acknowledged the vulnerability, and the `FreeWifi_secure` service is planned for full deactivation by 1 October 2025.

    Published:Nov 17, 2025
    Last Modified:Feb 4, 2026
    EPS:Nov 17, 2025
    EPSS Score:0.00006
    CVSS Score:3.5

    Affected Products

    Vendor
    Free
    Product
    Freebox Hd
    Vendor
    Free
    Product
    Freebox Mini
    Vendor
    Free
    Product
    Freebox One
    Vendor
    Free
    Product
    Freebox Os
    Vendor
    Free
    Product
    Freebox Revolution
    Vendor
    Free
    Product
    Freebox V5
    Vendor
    Freebox
    Product
    Mini 4k
    Vendor
    Freebox
    Product
    Mini 4k Firmware
    Vendor
    Freebox
    Product
    One
    Vendor
    Freebox
    Product
    One Firmware
    Vendor
    Freebox
    Product
    V5 Crystal
    Vendor
    Freebox
    Product
    V5 Crystal Firmware
    Vendor
    Freebox
    Product
    V5 Hd
    Vendor
    Freebox
    Product
    V5 Hd Firmware
    Vendor
    Freebox
    Product
    V6 Revolution
    Vendor
    Freebox
    Product
    V6 Revolution Firmware

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High