CVE-2025-57602 Details
Description
Insufficient hardening of the proxyuser account in the AiKaan IoT management platform, combined with the use of a shared, hardcoded SSH private key, allows remote attackers to authenticate to the cloud controller, gain interactive shell access, and pivot into other connected IoT devices. This can lead to remote code execution, information disclosure, and privilege escalation across customer environments.
A vulnerability in the AiKaan IoT management platform's cloud controller, specifically in versions through v3.25.0325-5-g2e9c59796, allows remote attackers to authenticate using a shared, hardcoded SSH private key. This exploitation grants interactive shell access via the 'proxyuser' account, which is intended for non-interactive reverse tunneling. Once access is gained, attackers can execute arbitrary commands, disrupt remote access services, and pivot into other connected IoT devices. This vulnerability could lead to remote code execution, information disclosure, and privilege escalation across customer environments.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Sep 22, 2025CISA-ADP
Assessed Sep 23, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/Shubhangborkar/aikaan-vulnerabilities/blob/main/cve2-proxyuser-shell.md | CISA-ADP | ExploitTechnical Description |
| https://github.com/Shubhangborkar/aikaan-vulnerabilities/blob/main/cve2-proxyuser-shell.md | [email protected] | ExploitTechnical Description |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-798 | Use of Hard-coded Credentials | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| AiKaan Cloud Controller | All versions |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Sep 23, 2025 | CVE Modified | CISA-ADP |
| Sep 22, 2025 | New CVE Received | [email protected] |
Volerion