CyberRota Analysis
AI-GeneratedA race condition in the `check.jst` file of the RDK-B WebUI allows remote attackers to exploit shared authentication state, potentially leading to unauthorized access through concurrent authentication requests. Organizations using the affected version, `rdkb-2025q4-kirkstone.04.10.26`, should prioritize remediation to mitigate the risk of unauthorized access to their systems. Immediate attention is recommended for those managing devices or services utilizing this version of the RDK-B framework.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Race condition in `check.jst` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` allows a remote attacker to gain unauthorized access via concurrent authentication requests that exploit shared authentication state.