Page 1 of 1

Calix Pre-Auth RCE on Port 6998 Allows Arbitrary Code Execution as Root

Posted: Mon Apr 14, 2025 2:26 pm
by Shane1145
Security researchers have uncovered a dangerous Remote Code Execution (RCE) vulnerability affecting Calix GigaCenter devices, allowing attackers to gain complete control over affected systems by exploiting an unsecured CWMP (CPE WAN Management Protocol) service.

The vulnerability enables arbitrary command execution with root privileges, potentially leading to the widespread compromise of targeted networks.

https://cyberpress.org/calix-pre-auth-r ... hatgpt.com