ZeroHour

CVE-2025-41674

CVSS 3.1
7.2 high
EPSS
<1%p47
Published
()
Modified
Description

A high privileged remote attacker can execute arbitrary system commands via POST requests in the diagnostic action due to improper neutralization of special elements used in an OS command.

Vendors
mbconnectline
Products
mbnet.mini firmware
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.