Junglewise Threat Intelligence

CVE-2025-67447: Neterbit NW-431F Router OS command injection in ping module

CVE-2025-67447 · Severity: critical · CVSS 9.8 · Published 2026-06-04

Technologies: Neterbit NW-431F Router. Vendors: Neterbit.

Executive brief

The Neterbit NW-431F router, a device used to provide 4G LTE internet connectivity, contains a critical security flaw in its network diagnostic tool. An attacker can use this flaw to take complete control of the router by sending malicious commands through the web interface. This could lead to the interception of network traffic, unauthorized access to the local network, or a total disruption of internet services.

Technical details

An OS command injection vulnerability exists in the network diagnosis (ping) module of the Neterbit NW-431F router. The application fails to properly sanitize user-supplied input in the IP address field before incorporating it into a system-level ping command. A remote, unauthenticated attacker can exploit this by injecting shell metacharacters (e.g., semicolons) followed by arbitrary OS commands. Successful exploitation results in command execution with the privileges of the web server, potentially leading to full system compromise. As of the advisory date, a fixed version has not been confirmed by the researcher.

Affected products

  • Neterbit NW-431F Router 20241014-IR03 and earlier

Timeline

  • 2026-06-04: advisory: NVD publication date

References

Related threats