The web service of iSherlock from HGiga has an OS Command Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary OS commands and execute them on the server.
Metrics
Affected Vendors & Products
References
History
Tue, 08 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Apr 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | HGiga iSherlock - OS Command Injection |
Tue, 08 Apr 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The web service of iSherlock from HGiga has an OS Command Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary OS commands and execute them on the server. | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published: 2025-04-08T02:11:48.241Z
Updated: 2025-04-08T14:19:12.551Z
Reserved: 2025-04-07T03:20:18.727Z
Link: CVE-2025-3363
Updated: 2025-04-08T14:19:07.998Z
Status : Awaiting Analysis
Published: 2025-04-08T02:15:21.077
Modified: 2025-04-08T18:13:53.347
Link: CVE-2025-3363
No data.
ReportizFlow