← back
CVE-2025-41675

Remote Command Injection via GET in Cloud Server Communication Script Due to Improper Input Neutralization

CVSS 7.2 HIGHEPSS 0.6%CWE-78
A high privileged remote attacker can execute arbitrary system commands via GET requests in the cloud server communication script due to improper neutralization of special elements used in an OS command.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →