Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-1685 | The airPASS from NetVision Information has an OS Command Injection vulnerability, allowing remote attackers with regular privileges to inject and execute arbitrary OS commands. |
Solution
For v2.9.0.x, please update to version 2.9.0.241231 or later. For v3.0.0.x, please update to version 3.0.0.241231 or later.
Workaround
No workaround given by the vendor.
Thu, 16 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 16 Jan 2025 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The airPASS from NetVision Information has an OS Command Injection vulnerability, allowing remote attackers with regular privileges to inject and execute arbitrary OS commands. | |
| Title | NetVision Information airPASS - OS Command Injection | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-01-16T15:36:31.672Z
Reserved: 2025-01-14T07:51:51.676Z
Link: CVE-2025-0457
Updated: 2025-01-16T15:36:27.160Z
Status : Received
Published: 2025-01-16T02:15:27.553
Modified: 2025-01-16T02:15:27.553
Link: CVE-2025-0457
No data.
OpenCVE Enrichment
No data.
EUVD