← Zurück zur CVE-Suche

CVE-2025-11571

Unknown

Beschreibung

Vulnerable endpoints accept user-controlled input through a URL in JSON format which enables command execution. The commands allowed to execute can open executables. However, the commands cannot pass parameters or arguments. To successfully execute this attack, the attacker needs to be on the same network.

CVSS 2.1EPSS 0.443%Risiko 0.22
Quelle öffnen
Veröffentlicht
2026-03-24 17:16:25
Betroffene Versionen
unknown
Typ
Sonstiges
Vektor
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:A/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X