CVE-2025-64127

EUVD-2025-199741
An OS command injection vulnerability exists due to insufficient 
sanitization of user-supplied input. The application accepts parameters 
that are later incorporated into OS commands without adequate 
validation. This could allow an unauthenticated attacker to execute 
arbitrary commands remotely.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
icscertCNA
10 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H