CVE-2025-26008: Telesquare Tlr-2005ksh Firmware

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

In Telesquare TLR-2005KSH 1.1.4, an unauthorized stack overflow vulnerability exists when requesting admin.cgi parameter with setSyncTimeHost.

Affected products

  • Telesquare Tlr-2005ksh Firmware: version 1.1.4 only

Published 2025-03-26. Last modified 2026-06-17.