jdcloud records
4 published records for vendor jdcloud.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-266 Incorrect Privilege Assignment3
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2025-66848No exploit | JD Cloud NAS routers AX1800 (4.3.1.r4308 and earlier), AX3000 (4.3.1.r4318 and earlier), AX6600 (4.5.1.r4533 and earlier), BE6500 (4.4.1.r43jdcloud · ax1800 firmware · CWE-94 | Critical9.8 | — | 1.1% | Dec 30, 2025 |
8Monitor | CVE-2026-2561No exploit | JingDong JD Cloud Box AX6600 jdcweb_rpc jdcapi web_get_ddns_uptime privileges managementjdcloud · ax6600 firmware · CWE-266 | Low2.1 | — | 0.6% | Feb 16, 2026 |
8Monitor | CVE-2026-2562No exploit | JingDong JD Cloud Box AX6600 jdcweb_rpc jdcapi cast_streen privileges managementjdcloud · ax6600 firmware · CWE-266 | Low2.1 | — | 0.6% | Feb 16, 2026 |
8Monitor | CVE-2026-2563No exploit | JingDong JD Cloud Box AX6600 jdcapp_rpc controlDevice get_status privileges managementjdcloud · ax6600 firmware · CWE-266 | Low2.1 | — | 0.6% | Feb 16, 2026 |
- CVE-2025-6684839Monitor
JD Cloud NAS routers AX1800 (4.3.1.r4308 and earlier), AX3000 (4.3.1.r4318 and earlier), AX6600 (4.5.1.r4533 and earlier), BE6500 (4.4.1.r43
CriticalCVSS 9.8No exploitEPSS 1%jdcloud · ax1800 firmwareDec 30, 2025
- CVE-2026-25618Monitor
JingDong JD Cloud Box AX6600 jdcweb_rpc jdcapi web_get_ddns_uptime privileges management
LowCVSS 2.1No exploitEPSS 1%jdcloud · ax6600 firmwareFeb 16, 2026
- CVE-2026-25628Monitor
JingDong JD Cloud Box AX6600 jdcweb_rpc jdcapi cast_streen privileges management
LowCVSS 2.1No exploitEPSS 1%jdcloud · ax6600 firmwareFeb 16, 2026
- CVE-2026-25638Monitor
JingDong JD Cloud Box AX6600 jdcapp_rpc controlDevice get_status privileges management
LowCVSS 2.1No exploitEPSS 1%jdcloud · ax6600 firmwareFeb 16, 2026