Freedomfi

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    3
    Critical Level Threats
    0
    High Level Threats
    1
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-67115

    Path Traversal in Sercomm SCE4255W Setup CGI Enables File Disclosure

    Last Modified: Mar 25, 2026
    Published: Mar 19, 2026

    CVE-2025-67113

    OS command injection in the CWMP client (/ftl/bin/cwmp) of Small Cell Sercomm SCE4255W (FreedomFi Englewood) firmware before DG3934v3@2308041842 allows remote attackers controlling the ACS endpoint to execute arbitrary commands as root via a crafted TR-069 Download URL that is passed unescaped into the firmware upgrade pipeline.

    Last Modified: Mar 25, 2026
    Published: Mar 19, 2026

    CVE-2025-67112

    Hard‑coded AES‑256 Key Enables Remote Decryption, Modification, and Privilege Escalation in FreedomFi Sercomm SCE4255W

    Last Modified: Mar 25, 2026
    Published: Mar 19, 2026

    CVE-2025-67114

    Deterministic Credential Generation Exposes Administrative Credentials in Sercomm SCE4255W Small Cell

    Last Modified: Mar 25, 2026
    Published: Mar 19, 2026
    Items Per Page