← volver
CVE-2025-41683

Weidmueller: Root Command Injection via Unsanitized Input in event_mail_test Endpoint

CVSS 8.8 HIGHEPSS 0.7%CWE-78
An authenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack of improper sanitizing of user input in the Main Web Interface (endpoint event_mail_test).
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →